CVE-2023-28078

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Feb 15, 2024
CWE ID 923

Summary

CVE-2023-28078 is a high severity vulnerability affecting Dell OS10 Networking Switches running 10.5.2.x and above. This vulnerability is found in the zeroMQ component when VLT (Virtual Link Trunking) is configured. A remote unauthenticated attacker can exploit this vulnerability to gain access to sensitive information and potentially cause a Denial of Service by overwhelming the switch with a large volume of requests. To remediate this vulnerability, Dell recommends upgrading to the latest version available as soon as possible. The potential danger posed by this vulnerability is significant as it allows unauthorized access to sensitive data, which can result in financial loss or reputational damage for affected organizations.

Share

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-28078 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options