CVE-2024-45766: Code Injection
Published Oct 17, 2024
·Updated
Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
Affected Software
1 affected component
Dell OpenManage Enterprise<4.2.0
Event History
Oct 17, 2024
CVE Published
via MITRE·01:59 AM
Data Sourced
via MITRE·01:59 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-45766?
CVE-2024-45766 is considered a moderate severity vulnerability due to the potential for code execution by a low privileged attacker.
2
How do I fix CVE-2024-45766?
To fix CVE-2024-45766, update Dell OpenManage Enterprise to version 4.2.0 or later.
3
Who can exploit CVE-2024-45766?
A low privileged attacker with remote access can exploit CVE-2024-45766.
4
What type of vulnerability is CVE-2024-45766?
CVE-2024-45766 is classified as an Improper Control of Generation of Code ('Code Injection') vulnerability.
5
What versions of Dell OpenManage Enterprise are affected by CVE-2024-45766?
Dell OpenManage Enterprise versions 4.1 and prior are affected by CVE-2024-45766.