7.5

CVE-2023-32463

Dell VxRail, version(s) 8.0.100 and earlier contain a denial-of-service vulnerability in the upgrade functionality. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to degraded performance and system malfunction.

Data is provided by the National Vulnerability Database (NVD)
DellVxrail D560 Firmware Version < 8.0.100
   DellVxrail D560 Version-
DellVxrail D560f Firmware Version < 8.0.100
   DellVxrail D560f Version-
DellVxrail E460 Firmware Version < 8.0.100
   DellVxrail E460 Version-
DellVxrail E560 Firmware Version < 8.0.100
   DellVxrail E560 Version-
DellVxrail E560 Vcf Firmware Version < 8.0.100
   DellVxrail E560 Vcf Version-
DellVxrail E560f Firmware Version < 8.0.100
   DellVxrail E560f Version-
DellVxrail E560f Vcf Firmware Version < 8.0.100
   DellVxrail E560f Vcf Version-
DellVxrail E560n Firmware Version < 8.0.100
   DellVxrail E560n Version-
DellVxrail E560n Vcf Firmware Version < 8.0.100
   DellVxrail E560n Vcf Version-
DellVxrail E660 Firmware Version < 8.0.100
   DellVxrail E660 Version-
DellVxrail E660f Firmware Version < 8.0.100
   DellVxrail E660f Version-
DellVxrail E660n Firmware Version < 8.0.100
   DellVxrail E660n Version-
DellVxrail E665 Firmware Version < 8.0.100
   DellVxrail E665 Version-
DellVxrail E665f Firmware Version < 8.0.100
   DellVxrail E665f Version-
DellVxrail E665n Firmware Version < 8.0.100
   DellVxrail E665n Version-
DellVxrail G560 Firmware Version < 8.0.100
   DellVxrail G560 Version-
DellVxrail G560 Vcf Firmware Version < 8.0.100
   DellVxrail G560 Vcf Version-
DellVxrail G560f Firmware Version < 8.0.100
   DellVxrail G560f Version-
DellVxrail G560f Vcf Firmware Version < 8.0.100
   DellVxrail G560f Vcf Version-
DellVxrail P470 Firmware Version < 8.0.100
   DellVxrail P470 Version-
DellVxrail P570 Firmware Version < 8.0.100
   DellVxrail P570 Version-
DellVxrail P570 Vcf Firmware Version < 8.0.100
   DellVxrail P570 Vcf Version-
DellVxrail P570f Firmware Version < 8.0.100
   DellVxrail P570f Version-
DellVxrail P570f Vcf Firmware Version < 8.0.100
   DellVxrail P570f Vcf Version-
DellVxrail P580n Firmware Version < 8.0.100
   DellVxrail P580n Version-
DellVxrail P580n Vcf Firmware Version < 8.0.100
   DellVxrail P580n Vcf Version-
DellVxrail P670f Firmware Version < 8.0.100
   DellVxrail P670f Version-
DellVxrail P670n Firmware Version < 8.0.100
   DellVxrail P670n Version-
DellVxrail P675f Firmware Version < 8.0.100
   DellVxrail P675f Version-
DellVxrail P675n Firmware Version < 8.0.100
   DellVxrail P675n Version-
DellVxrail S470 Firmware Version < 8.0.100
   DellVxrail S470 Version-
DellVxrail S570 Firmware Version < 8.0.100
   DellVxrail S570 Version-
DellVxrail S570 Vcf Firmware Version < 8.0.100
   DellVxrail S570 Vcf Version-
DellVxrail S670 Firmware Version < 8.0.100
   DellVxrail S670 Version-
DellVxrail V470 Firmware Version < 8.0.100
   DellVxrail V470 Version-
DellVxrail V570 Firmware Version < 8.0.100
   DellVxrail V570 Version-
DellVxrail V570 Vcf Firmware Version < 8.0.100
   DellVxrail V570 Vcf Version-
DellVxrail V570f Firmware Version < 8.0.100
   DellVxrail V570f Version-
DellVxrail V570f Vcf Firmware Version < 8.0.100
   DellVxrail V570f Vcf Version-
DellVxrail V670f Firmware Version < 8.0.100
   DellVxrail V670f Version-
DellVxrail Vd-4000r Firmware Version < 8.0.100
   DellVxrail Vd-4000r Version-
DellVxrail Vd-4000w Firmware Version < 8.0.100
   DellVxrail Vd-4000w Version-
DellVxrail Vd-4000z Firmware Version < 8.0.100
   DellVxrail Vd-4000z Version-
DellVxrail Vd-4510c Firmware Version < 8.0.100
   DellVxrail Vd-4510c Version-
DellVxrail Vd-4520c Firmware Version < 8.0.100
   DellVxrail Vd-4520c Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.17% 0.387
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
security_alert@emc.com 3.4 0.8 2.5
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:L
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.