Un authenticated attacker could execute code with local access
CVE-2024-47476

7.8HIGH

Key Information:

Vendor
Dell
Vendor
CVE Published:
3 December 2024

Summary

The vulnerability in Dell NetWorker Management Console versions 19.11 arises from an improper verification of cryptographic signatures. This security flaw may enable an unauthenticated local attacker to exploit the system, potentially leading to unauthorized code execution. Proper verification mechanisms are essential to safeguarding systems against such vulnerabilities.

Affected Version(s)

NetWorker Management Console NRE 8.0.22

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.