Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI. A remote high privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS to bypass security restriction. Exploitation may lead to a system take over by an attacker.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2023-12-14T15:40:07.760Z
Updated: 2023-12-14T15:40:07.760Z
Reserved: 2023-11-17T06:14:57.042Z
Link: CVE-2023-48667
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-12-14T16:15:50.040
Modified: 2023-12-27T19:30:06.630
Link: CVE-2023-48667
JSON object: View
Redhat Information
No data.
CWE