CVE-2023-44300

Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in the appliance. A local attacker with privileges could potentially exploit this vulnerability, leading to the disclosure of certain service credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dell:powerprotect_data_manager_dm5500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:dell:powerprotect_data_manager_dm5500:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-12-04 09:15

Updated : 2023-12-18 06:15


NVD link : CVE-2023-44300

Mitre link : CVE-2023-44300

CVE.ORG link : CVE-2023-44300


JSON object : View

Products Affected

dell

  • powerprotect_data_manager_dm5500_firmware
  • powerprotect_data_manager_dm5500
CWE
CWE-522

Insufficiently Protected Credentials

CWE-256

Plaintext Storage of a Password