Dell PowerStore versions prior to 3.5 contain an improper verification of cryptographic signature vulnerability. An attacker can trick a high privileged user to install a malicious binary by bypassing the existing cryptographic signature checks
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-36693 | Dell PowerStore versions prior to 3.5 contain an improper verification of cryptographic signature vulnerability. An attacker can trick a high privileged user to install a malicious binary by bypassing the existing cryptographic signature checks |
Wed, 04 Dec 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dell powerstoreos
|
|
| CPEs | cpe:2.3:o:dell:powerstoreos:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Dell powerstoreos
|
|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-12-04T21:36:20.019Z
Reserved: 2023-05-09T06:02:34.291Z
Link: CVE-2023-32449
Updated: 2024-08-02T15:18:37.306Z
Status : Modified
Published: 2023-06-22T07:15:08.867
Modified: 2024-11-21T08:03:22.523
Link: CVE-2023-32449
No data.
OpenCVE Enrichment
No data.
EUVD