CVE-2023-24568

MEDIUM

Dell NetWorker - SSL/TLS Validation Bypass

Title source: llm
STIX 2.1

Description

Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which could disallow replacing CA signed certificates.

Scores

CVSS v3 5.0
EPSS 0.0009
EPSS Percentile 24.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-295 CWE-297
Status published
Products (3)
dell/networker 19.7.1
dell/networker 19.8.0.0
dell/networker < 19.7.0.3
Published May 30, 2023
Tracked Since Feb 18, 2026