First published: Tue Apr 11 2023(Updated: )
Dell PPDM versions 19.12, 19.11 and 19.10, contain an improper access control vulnerability. A remote authenticated malicious user with low privileges could potentially exploit this vulnerability to bypass intended access restrictions and perform unauthorized actions.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell PowerProtect Data Manager Dm5500 Firmware | =19.10 | |
Dell PowerProtect Data Manager Dm5500 Firmware | =19.11 | |
Dell PowerProtect Data Manager Dm5500 Firmware | =19.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28062 has a medium severity rating due to the potential for unauthorized actions by a remote authenticated user.
To fix CVE-2023-28062, upgrade Dell PowerProtect Data Manager to the latest available version.
Users of Dell PowerProtect Data Manager versions 19.10, 19.11, and 19.12 are affected by CVE-2023-28062.
CVE-2023-28062 is an improper access control vulnerability.
Yes, a remote authenticated low-privileged user can exploit CVE-2023-28062 to bypass access restrictions.