CVE-2023-32484

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 15, 2024
CWE ID 20

Summary

CVE-2023-32484 is a critical vulnerability affecting Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, and below. An unauthenticated attacker can exploit this improper input validation issue to escalate privileges and gain highest administrative access. This vulnerability impacts certain protocols and poses a significant risk. Dell strongly advises customers to upgrade their software as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share