CVE-2023-39248

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 5, 2023
Updated: Dec 11, 2023
CWE ID 400

Summary

CVE-2023-39248 is a high severity Denial of Service vulnerability affecting Dell OS10 Networking Switches running version 10.5.2.x and above. When these switches are configured with Virtual LAN Trunking (VLT) and Virtual Router Redundancy Protocol (VRRP), an unauthenticated remote user can flood the network, causing a Denial of Service (DoS) attack. The affected network users experience an outage, making this vulnerability a significant threat. Dell strongly advises customers to upgrade their switch software at the earliest opportunity to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share