Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-23692


Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application.


Published

2023-02-01T13:15:09.640

Last Modified

2024-11-21T07:46:40.377

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-78
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell emc_data_domain_os < 6.2.1.90 Yes
Operating System dell emc_data_domain_os < 7.9.0.0 Yes
Operating System dell emc_data_domain_os < 7.7.3 Yes

References