CVE-2024-25955

Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:powermax_eem:5978:*:*:*:*:*:*:*
cpe:2.3:a:dell:solutions_enabler_virtual_appliance:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:unisphere_for_powermax_virtual_appliance:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-03-28 19:15

Updated : 2025-01-27 18:57


NVD link : CVE-2024-25955

Mitre link : CVE-2024-25955

CVE.ORG link : CVE-2024-25955


JSON object : View

Products Affected

dell

  • unisphere_for_powermax_virtual_appliance
  • powermax_eem
  • solutions_enabler_virtual_appliance
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')