CVE-2023-48662: OS Command Injection
Published Dec 14, 2023
·Updated
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.
Affected Software
3 affected components
Dell Solutions Enabler Virtual Appliance<9.2.4.5
Dell Unisphere For Powermax Virtual Appliance<9.2.4.7
Dell PowerMax OS=5978
Event History
Dec 14, 2023
CVE Published
03:59 PM
Data Sourced
03:59 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-48662?
CVE-2023-48662 is considered a high severity command injection vulnerability that can lead to the execution of arbitrary OS commands.
2
How do I fix CVE-2023-48662?
To mitigate CVE-2023-48662, upgrade Dell vApp Manager to version 9.2.4.5 or later.
3
Which versions are affected by CVE-2023-48662?
Versions of Dell vApp Manager prior to 9.2.4.x are affected by CVE-2023-48662.
4
Who can exploit the CVE-2023-48662 vulnerability?
CVE-2023-48662 can be exploited by a remote malicious user with high privileges.
5
What systems are impacted by CVE-2023-48662?
CVE-2023-48662 impacts Dell Solutions Enabler Virtual Appliance and Dell Unisphere For Powermax Virtual Appliance.