First published: Tue May 30 2023(Updated: )
PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains License Key Stored in Cleartext vulnerability. A local user with access to the installation directory can retrieve the license key of the product and use it to install and license PowerPath on different systems.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell PowerPath | =7.0 | |
Dell PowerPath | =7.1 | |
Dell PowerPath | =7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-32448 is considered a medium severity vulnerability.
To fix CVE-2023-32448, upgrade to PowerPath version 7.3 or later.
CVE-2023-32448 affects Dell PowerPath for Windows versions 7.0, 7.1, and 7.2.
A local user with access to the PowerPath installation directory can exploit CVE-2023-32448.
CVE-2023-32448 exposes the license key in cleartext, allowing unauthorized use of the software.