CVE-2024-49601: OS Command Injection
Dell Unity, version(s) 5.4 and prior, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-49601?
CVE-2024-49601 is classified as a high severity vulnerability due to the potential for command execution by an unauthenticated attacker.
How do I fix CVE-2024-49601?
To mitigate CVE-2024-49601, update Dell Unity to version 5.4.1 or later as per the security updates provided by Dell.
Who is affected by CVE-2024-49601?
Any user running Dell Unity version 5.4 or earlier is at risk for exploitation of CVE-2024-49601.
What type of vulnerability is CVE-2024-49601?
CVE-2024-49601 is an OS Command Injection vulnerability that allows attackers to execute arbitrary commands.
Can CVE-2024-49601 be exploited remotely?
Yes, CVE-2024-49601 can be exploited remotely by unauthenticated attackers with access to the affected system.