Version Disclosure Vulnerability in Dell NetWorker Software
CVE-2023-24567
6.5MEDIUM
Summary
The vulnerability found in Dell NetWorker allows a user with remote access to the NetWorker clients to obtain sensitive version information of the RabbitMQ component. This may enable attackers to tailor their exploits against specific targets, potentially compromising system integrity and leading to unauthorized access. Organizations utilizing affected versions should take immediate steps to apply security updates and mitigate risks associated with this vulnerability.
Affected Version(s)
Dell NetWorker, NVE 19.5 and earlier versions
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved