First published: Mon Dec 18 2023(Updated: )
Dell NetWorker Virtual Edition versions 19.8 and below contain the use of deprecated cryptographic algorithms in the SSH component. A remote unauthenticated attacker could potentially exploit this vulnerability leading to some information disclosure.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC NetWorker | <19.8.0.4 | |
Dell EMC NetWorker | >=19.9<19.9.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-28053 is significant due to the potential for remote unauthenticated exploitation and information disclosure.
To fix CVE-2023-28053, upgrade Dell NetWorker Virtual Edition to version 19.9 or later where deprecated cryptographic algorithms are no longer used.
CVE-2023-28053 affects Dell NetWorker Virtual Edition versions 19.8 and below, including certain versions in the 19.9 release.
CVE-2023-28053 could be exploited by a remote unauthenticated attacker, potentially leading to information disclosure.
CVE-2023-28053 poses risks to data security by allowing potential attackers to exploit deprecated cryptographic algorithms, leading to exposure of sensitive information.