VYPR
High severity8.4NVD Advisory· Published May 31, 2023· Updated Jun 17, 2026

CVE-2023-25539

CVE-2023-25539

Description

Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. This is a high severity vulnerability as the exploitation allows an attacker to take complete control of a system, so Dell recommends customers to upgrade at the earliest opportunity.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Dell/NetWorkerllm-fuzzy3 versions
    <19.6.1.2+ 2 more
    • (no CPE)range: <19.6.1.2
    • cpe:2.3:a:dell:networker:*:*:*:*:*:*:*:*range: <19.7.0.4
    • cpe:2.3:a:dell:networker:19.7.1:*:*:*:*:*:*:*
  • Range: NetWorker 19.6.1.2 Linux and prior releases, NetWorker 19.7.0.3 Linux and prior releases, 19.7.1 Linux

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.