CVE Published: 15/02/2024 |
CVE Updated: 27/08/2024 |
CVE Year: 2023 Source: dell |
Vendor: Dell |
Product: Enterprise SONiC OS Status : PUBLISHED
CVE-2023-32484 Description
Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input validation vulnerability. A remote unauthenticated malicious user may exploit this vulnerability and escalate privileges up to the highest administrative level. This is a Critical vulnerability affecting certain protocols, Dell recommends customers to upgrade at the earliest opportunity.
Metrics
CVSS Version: 3.1 |
Base Score: 9.8 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H