CVE-2023-39250
Summary
| CVE | CVE-2023-39250 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-08-16 16:15:00 UTC |
| Updated | 2023-11-03 19:00:00 UTC |
| Description | Dell Storage Integration Tools for VMware (DSITV) and Dell Storage vSphere Client Plugin (DSVCP) versions prior to 6.1.1 and Replay Manager for VMware (RMSV) versions prior to 3.1.2 contain an information disclosure vulnerability. A local low-privileged malicious user could potentially exploit this vulnerability to retrieve an encryption key that could aid in further attacks. |
Risk And Classification
Problem Types: CWE-540
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Dell | Replay Manager For Vmware | All | All | All | All |
| Application | Dell | Storage Integration Tools For Vmware | All | All | All | All |
| Application | Dell | Storage Integration Tools For Vmware | 06.01.00.016 | All | All | All |
| Application | Dell | Storage Vsphere Client Plugin | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| DSA-2023-282: Security Update for Dell Storage Integration Tools for VMware (DSITV) Vulnerabilities | Dell US | MISC | www.dell.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.