DSA-2023-415: Security Update for Dell Repository Manager vulnerability
摘要: Dell Repository Manager remediation is available for Multiple Improper Access Controls Vulnerabilities that could be exploited by malicious users to compromise the affected system.
本文适用于
本文不适用于
本文并非针对某种特定的产品。
本文并非包含所有产品版本。
影响
Medium
详情
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
|---|---|---|---|
| CVE-2023-44292 | Dell Repository Manager, 3.4.3 and prior, contains an Improper Access Control vulnerability in its installation module. A local low-privileged attacker could potentially exploit this vulnerability, leading to gaining escalated privileges. | 6.7 | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
| CVE-2023-44282 | Dell Repository Manager, 3.4.3 and prior, contains an Improper Access Control vulnerability in its installation module. A local low-privileged attacker could potentially exploit this vulnerability, leading to gaining escalated privileges. | 6.7 | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
| Proprietary Code CVEs | Description | CVSS Base Score | CVSS Vector String |
|---|---|---|---|
| CVE-2023-44292 | Dell Repository Manager, 3.4.3 and prior, contains an Improper Access Control vulnerability in its installation module. A local low-privileged attacker could potentially exploit this vulnerability, leading to gaining escalated privileges. | 6.7 | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
| CVE-2023-44282 | Dell Repository Manager, 3.4.3 and prior, contains an Improper Access Control vulnerability in its installation module. A local low-privileged attacker could potentially exploit this vulnerability, leading to gaining escalated privileges. | 6.7 | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H |
受影响的产品和补救措施
| CVEs Addressed | Product | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| CVE-2023-44292, CVE-2023-44282 | Dell Repository Manager | Versions prior to 3.4.4 | 3.4.4 | Apply the latest Security Remediation |
| CVEs Addressed | Product | Affected Versions | Remediated Versions | Link |
|---|---|---|---|---|
| CVE-2023-44292, CVE-2023-44282 | Dell Repository Manager | Versions prior to 3.4.4 | 3.4.4 | Apply the latest Security Remediation |
修订历史记录
| Revision | Date | Description |
|---|---|---|
| 1.0 | 2023-11-07 | Initial Release |
| 2.0 | 2023-11-08 | Minor formatting editing with no changes to the information. |
| 3.0 | 2023-11-13 | Minor formatting editing with no changes to the information. |
| 4.0 | 2023-11-14 | Minor formatting editing with no changes to the information. |
| 5.0 | 2013-11-15 | Minor formatting editing with no changes to the information. |
相关信息
法律免责声明
受影响的产品
Dell Repository Manager Version 2.1, Dell Repository Manager Version 2.2, Dell Repository Manager Version 1.0, Dell Repository Manager Version 1.1, Dell Repository Manager Version 1.2, Dell Repository Manager Version 1.3
, Dell Repository Manager Version 1.4, Dell Repository Manager Version 1.5, Dell Repository Manager Version 1.6, Dell Repository Manager Version 1.7, Dell Repository Manager Version 1.8, Dell Repository Manager Version 1.9, Dell Repository Manager Version 2.0
...
文章属性
文章编号: 000219303
文章类型: Dell Security Advisory
上次修改时间: 15 11月 2023
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。