CVE-2023-48668

CVSS 3.1 Score 8.2 of 10 (high)

Details

Published Dec 14, 2023
Updated: Dec 27, 2023
CWE ID 78

Summary

CVE-2023-48668 is a vulnerability affecting Dell PowerProtect DD versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, and 6.2.1.110 on DDMC. The vulnerability is categorized as an OS command injection and can be exploited by a local high privileged attacker to execute arbitrary OS commands on the managed system application's underlying OS with the privileges of the vulnerable application. This could potentially lead to a system takeover by an attacker on a managed system of DDMC. The base severity of this vulnerability is rated as HIGH, with a CVSS score of 8.2 out of 10, indicating significant potential danger to organizations using the affected Dell PowerProtect DD versions.

Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2023-48668 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions