Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability. A threat actor does not need any specific privileges to potentially exploit this vulnerability. An attacker could perform a man-in-the-middle attack and eavesdrop on encrypted communications from Cloud Mobility to Cloud Storage devices. Exploitation could lead to the compromise of secret and sensitive information, cloud storage connection downtime, and the integrity of the connection to the Cloud devices.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2023-01-19T11:25:48.778Z
Updated: 2023-01-19T11:26:26.002Z
Reserved: 2023-01-17T05:22:17.394Z
Link: CVE-2023-23690
JSON object: View
NVD Information
Status : Modified
Published: 2023-01-19T12:15:13.623
Modified: 2023-11-07T04:07:52.187
Link: CVE-2023-23690
JSON object: View
Redhat Information
No data.