Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-45763


Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution. This is a critical severity vulnerability so Dell recommends customers to upgrade at the earliest opportunity.


Published

2024-11-08T17:15:06.243

Last Modified

2024-11-13T16:52:22.340

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.1 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell enterprise_sonic_distribution < 4.1.6 Yes
Operating System dell enterprise_sonic_distribution < 4.2.2 Yes

References