First published: Fri Jun 23 2023(Updated: )
Dell VxRail, versions prior to 7.0.450, contain an improper certificate validation vulnerability. A high privileged remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim’s data in transit.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Vxrail D560 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail D560 | ||
Dell Vxrail D560f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail D560f | ||
Dell Vxrail E460 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E460 | ||
Dell Vxrail E560 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560 | ||
Dell Vxrail E560 Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560 Vcf | ||
Dell Vxrail E560f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560f | ||
Dell Vxrail E560f Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560f Vcf | ||
Dell Vxrail E560n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560n | ||
Dell Vxrail E560n Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560n Vcf | ||
Dell Vxrail E660 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E660 | ||
Dell Vxrail E660f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E660f | ||
Dell Vxrail E660n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E660n | ||
Dell Vxrail E665 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E665 | ||
Dell Vxrail E665f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E665f | ||
Dell Vxrail E665n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E665n | ||
Dell Vxrail G560 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail G560 | ||
Dell Vxrail G560 Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail G560 Vcf | ||
Dell Vxrail G560f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail G560f | ||
Dell Vxrail G560f Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail G560f Vcf | ||
Dell Vxrail P470 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P470 | ||
Dell Vxrail P570 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P570 | ||
Dell Vxrail P570 Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P570 Vcf | ||
Dell Vxrail P570f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P570f | ||
Dell Vxrail P570f Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P570f Vcf | ||
Dell Vxrail P580n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P580n | ||
Dell Vxrail P580n Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P580n Vcf | ||
Dell Vxrail P670f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P670f | ||
Dell Vxrail P670n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P670n | ||
Dell Vxrail P675f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P675f | ||
Dell Vxrail P675n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P675n | ||
Dell Vxrail S470 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail S470 | ||
Dell Vxrail S570 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail S570 | ||
Dell Vxrail S570 Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail S570 Vcf | ||
Dell Vxrail S670 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail S670 | ||
Dell Vxrail V470 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V470 | ||
Dell Vxrail V570 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V570 | ||
Dell Vxrail V570 Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V570 Vcf | ||
Dell Vxrail V570f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V570f | ||
Dell Vxrail V570f Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V570f Vcf | ||
Dell Vxrail V670f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V670f | ||
Dell Vxrail Vd-4000r Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4000r | ||
Dell Vxrail Vd-4000w Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4000w | ||
Dell Vxrail Vd-4000z Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4000z | ||
Dell Vxrail Vd-4510c Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4510c | ||
Dell Vxrail Vd-4520c Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4520c |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-32464 is rated as low with a score of 3.3.
A high privileged remote attacker may exploit CVE-2023-32464 by carrying out a man-in-the-middle attack.
Dell VxRail versions prior to 7.0.450 are affected by CVE-2023-32464.
Yes, a high privileged remote attacker can potentially exploit CVE-2023-32464 by supplying a crafted certificate.
For more information about CVE-2023-32464, refer to the Dell VxRail security update on the Dell support website.