Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-24568: DSA-2023-059: Dell NetWorker Security Update for an Improper Validation Vulnerability

Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which could disallow replacing CA signed certificates.

CVE
#vulnerability#windows#linux#dell

Vaikutus

High

Tiedot

Proprietary Code CVE(s)

Description

CVSS Base Score

CVSS Vector String

CVE-2023-24568

Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which could disallow replacing CA signed certificates.

7.4

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L

Proprietary Code CVE(s)

Description

CVSS Base Score

CVSS Vector String

CVE-2023-24568

Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which could disallow replacing CA signed certificates.

7.4

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L

Dell Technologies suosittelee, että kaikki asiakkaat ottavat huomioon sekä CVSS-peruspistemäärän että kaikki asiaankuuluvat väliaikaiset ja ympäristöön liittyvät pisteet, jotka voivat vaikuttaa tietyn tietoturvahaavoittuvuuden mahdolliseen vakavuuteen.

Tuotteet, joihin asia vaikuttaa ja tilanteen korjaaminen

CVE Addressed

Product

Affected Version(s)

Updated Version(s)

Link to Update

CVE-2023-24568

Dell NetWorker

19.8.0.0, 19.7.0.3 and prior releases,
19.7.1

19.8.0.1 & Later releases

19.7.0.4 & Later releases

https://www.dell.com/support/home/en-ca/product-support/product/networker/drivers

CVE Addressed

Product

Affected Version(s)

Updated Version(s)

Link to Update

CVE-2023-24568

Dell NetWorker

19.8.0.0, 19.7.0.3 and prior releases,
19.7.1

19.8.0.1 & Later releases

19.7.0.4 & Later releases

https://www.dell.com/support/home/en-ca/product-support/product/networker/drivers

Versiohistoria

Revision

Date

Description

1.0

2023-04-03

Initial Release

2.0

2023-05-11

Made changes to the Updated Versions

Asiaan liittyvät tiedot

Dell Security Advisories and Notices
Dell Vulnerability Response Policy
CVSS Scoring Guide

Lisätietoja

NW server impacted with this vulnerability and applicable platforms are windows and linux.

NetWorker Family, NetWorker, NetWorker Series, NetWorker Module, Product Security Information

11 toukok. 2023

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda