CVE-2023-39248
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Dec 5, 2023
Updated: Dec 11, 2023
CWE ID 400
Summary
CVE-2023-39248 is a high severity Denial of Service vulnerability affecting Dell OS10 Networking Switches running version 10.5.2.x and above. When these switches are configured with Virtual LAN Trunking (VLT) and Virtual Router Redundancy Protocol (VRRP), an unauthenticated remote user can flood the network, causing a Denial of Service (DoS) attack. The affected network users experience an outage, making this vulnerability a significant threat. Dell strongly advises customers to upgrade their switch software at the earliest opportunity to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Dell Technologies, Inc.