CVE-2023-48661

MEDIUM

Dell vApp Manager <9.2.4 - Info Disclosure

Title source: llm
STIX 2.1

Description

Dell vApp Manager, versions prior to 9.2.4.x contain an arbitrary file read vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability to read arbitrary files from the target system.

Scores

CVSS v3 4.9
EPSS 0.0015
EPSS Percentile 35.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-552
Status published
Products (3)
dell/powermax_os 5978
dell/solutions_enabler_virtual_appliance < 9.2.4.5
dell/unisphere_for_powermax_virtual_appliance < 9.2.4.7
Published Dec 14, 2023
Tracked Since Feb 18, 2026