First published: Fri Jun 23 2023(Updated: )
Dell VxRail, versions prior to 7.0.450, contain an improper certificate validation vulnerability. A high privileged remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim’s data in transit.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Vxrail D560f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail D560 | ||
Dell Vxrail D560f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail D560f | ||
Dell VxRail E460 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E460 | ||
Dell Vxrail E560f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail E560 | ||
Dell VxRail E560 VCF | >=7.0.0<7.0.450 | |
Dell VxRail E560 VCF | ||
Dell VxRail E560 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560f Firmware | ||
Dell VxRail E560f VCF Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E560f Firmware | ||
Dell VxRail E560n Firmware | >=7.0.0<7.0.450 | |
Dell VxRail E560n VCF | ||
Dell VxRail E560n Firmware | >=7.0.0<7.0.450 | |
Dell VxRail E560n VCF | ||
Dell Vxrail E660 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E660 | ||
Dell Vxrail E660f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E660f Firmware | ||
Dell Vxrail E660n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail E660n Firmware | ||
Dell Vxrail E665n | >=7.0.0<7.0.450 | |
Dell Vxrail E665 | ||
Dell VxRail E665f | >=7.0.0<7.0.450 | |
Dell Vxrail E665f Firmware | ||
Dell Vxrail E665n | >=7.0.0<7.0.450 | |
Dell Vxrail E665n Firmware | ||
Dell Vxrail G560 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail G560 | ||
Dell Vxrail G560 Firmware | >=7.0.0<7.0.450 | |
Dell VxRail G560 VCF | ||
Dell Vxrail G560f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail G560f VCF | ||
Dell VxRail G560f VCF | >=7.0.0<7.0.450 | |
Dell VxRail G560f VCF | ||
Dell Vxrail P470 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P470 | ||
Dell Vxrail P570f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail P570 | ||
Dell Vxrail P570f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P570f Vcf | ||
Dell Vxrail P570f Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P570f Vcf | ||
Dell Vxrail P570f Vcf | >=7.0.0<7.0.450 | |
Dell Vxrail P570f Vcf | ||
Dell Vxrail P580n Vcf Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P580n Vcf Firmware | ||
Dell VxRail P580n | >=7.0.0<7.0.450 | |
Dell Vxrail P580n Vcf Firmware | ||
Dell Vxrail P670f Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P670f Firmware | ||
Dell Vxrail P670n Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail P670n Firmware | ||
Dell VxRail P675f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail P675f Firmware | ||
Dell Vxrail P675n | >=7.0.0<7.0.450 | |
Dell Vxrail P675n Firmware | ||
Dell Vxrail S470 | >=7.0.0<7.0.450 | |
Dell VxRail S470 Firmware | ||
Dell Vxrail S570 Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail S570 Firmware | ||
Dell VxRail S570 VCF | >=7.0.0<7.0.450 | |
Dell VxRail S570 VCF | ||
Dell Vxrail S670 | >=7.0.0<7.0.450 | |
Dell Vxrail S670 Firmware | ||
Dell VxRail V470 Firmware | >=7.0.0<7.0.450 | |
Dell VxRail V470 Firmware | ||
Dell Vxrail V570f Firmware | >=7.0.0<7.0.450 | |
Dell VxRail V570 | ||
Dell Vxrail V570 Vcf Firmware | >=7.0.0<7.0.450 | |
Dell VxRail V570 VCF | ||
Dell VxRail V570f VCF Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail V570f Firmware | ||
Dell VxRail V570f VCF Firmware | >=7.0.0<7.0.450 | |
Dell VxRail V570f VCF | ||
Dell VxRail V670f | >=7.0.0<7.0.450 | |
Dell VxRail V670f | ||
Dell Vxrail Vd-4000r Firmware | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4000r Firmware | ||
Dell VxRail Vd-4000w | >=7.0.0<7.0.450 | |
Dell VxRail Vd-4000w | ||
Dell VxRail Vx-4000z | >=7.0.0<7.0.450 | |
Dell Vxrail Vd-4000z Firmware | ||
Dell VxRail Vx-4510c | >=7.0.0<7.0.450 | |
Dell VxRail Vx-4510c | ||
Dell VxRail Vd-4520c Firmware | >=7.0.0<7.0.450 | |
Dell VxRail Vd-4520c Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-32464 is rated as low with a score of 3.3.
A high privileged remote attacker may exploit CVE-2023-32464 by carrying out a man-in-the-middle attack.
Dell VxRail versions prior to 7.0.450 are affected by CVE-2023-32464.
Yes, a high privileged remote attacker can potentially exploit CVE-2023-32464 by supplying a crafted certificate.
For more information about CVE-2023-32464, refer to the Dell VxRail security update on the Dell support website.