CVE-2023-28074

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Jul 31, 2024
Updated: Aug 20, 2024
CWE ID 125

Summary

CVE-2023-28074 is a newly disclosed vulnerability affecting Dell BSAFE Crypto-C Micro Edition version 4.1.5 and Dell BSAFE Micro Edition Suite versions 4.0 through 4.6.1, as well as version 5.0. This issue involves an Out-of-bounds Read vulnerability, where an unauthenticated attacker with local access can potentially exploit this flaw. Successful exploitation could result in significant information exposure, posing a potential risk to data security. Organizations using these Dell products are urged to apply the available patches to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Dell BSAFE Micro Edition Suite
  • Dell Bsafe Crypto-c-micro-edition

Affected Vendors

  • Dell Technologies, Inc.