CVE-2023-32464
—CVSS 3.1
3.3 low
EPSS
<1%p16
Published
()
Modified
Description
Dell VxRail, versions prior to 7.0.450, contain an improper certificate validation vulnerability. A high privileged remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim’s data in transit.
- Vendors
- dell
- Products
- vxrail d560 firmware, vxrail d560f firmware, vxrail e460 firmware, vxrail e560 firmware, vxrail e560 vcf firmware, vxrail e560f firmware, vxrail e560f vcf firmware, vxrail e560n firmware, vxrail e560n vcf firmware, vxrail e660 firmware, vxrail e660f firmware, vxrail e660n firmware
- Weakness
- CWE-295
- Vector
- CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.