First published: Mon Feb 12 2024(Updated: )
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authenticated attacker could potentially exploit this vulnerability, leading to the ability to overwrite arbitrary files on the file system with root privileges.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC Unity Operating Environment | <5.4.0.0.5.094 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0167 is considered a critical severity vulnerability as it allows authenticated attackers to execute OS command injections with root privileges.
To fix CVE-2024-0167, upgrade to Dell Unity versions 5.4 or later, which addresses the OS Command Injection vulnerability.
CVE-2024-0167 affects Dell Unity Operating Environment versions prior to 5.4.
If CVE-2024-0167 is exploited, an attacker could overwrite arbitrary files on the file system with root privileges.
CVE-2024-0167 can be exploited by authenticated attackers with access to the svc_topstats utility on affected systems.