CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS
Percentile
9.6%
Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contains an Improper Neutralization of Special Elements used in a Command (‘Command Injection’) vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability leading to code execution.
Vendor | Product | Version | CPE |
---|---|---|---|
dell | smartfabric_os10 | 10.5.6.0 | cpe:2.3:o:dell:smartfabric_os10:10.5.6.0:*:*:*:*:*:*:* |
dell | smartfabric_os10 | 10.5.5.0 | cpe:2.3:o:dell:smartfabric_os10:10.5.5.0:*:*:*:*:*:*:* |
dell | smartfabric_os10 | 10.5.4.0 | cpe:2.3:o:dell:smartfabric_os10:10.5.4.0:*:*:*:*:*:*:* |
dell | smartfabric_os10 | 10.5.3.0 | cpe:2.3:o:dell:smartfabric_os10:10.5.3.0:*:*:*:*:*:*:* |
[
{
"defaultStatus": "unaffected",
"product": "SmartFabric OS10 Software",
"vendor": "Dell",
"versions": [
{
"status": "affected",
"version": "10.5.6.x"
},
{
"status": "affected",
"version": "10.5.5.x"
},
{
"status": "affected",
"version": "10.5.4.x"
},
{
"status": "affected",
"version": "10.5.3.x"
}
]
}
]