VYPR

OS10 Networking Switches

by Dell

CVEs (5)

  • CVE-2023-32484CriFeb 15, 2024
    risk 0.64cvss 9.8epss 0.01

    Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input validation vulnerability. A remote unauthenticated malicious user may exploit this vulnerability and escalate privileges up to the highest administrative level.…

  • CVE-2023-32462CriFeb 15, 2024
    risk 0.64cvss 9.8epss 0.02

    Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands and…

  • CVE-2023-28078CriFeb 15, 2024
    risk 0.59cvss 9.1epss 0.01

    Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacker could potentially exploit this vulnerability leading to information disclosure and a possible Denial of Service when a huge…

  • CVE-2024-25949HigJun 12, 2024
    risk 0.57cvss 8.8epss 0.00

    Dell OS10 Networking Switches, versions10.5.6.x, 10.5.5.x, 10.5.4.x and 10.5.3.x ,contain an improper authorization vulnerability. A remote authenticated attacker could potentially exploit this vulnerability leading to escalation of privileges.

  • CVE-2023-39248HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.01

    Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Service) vulnerability, when switches are configured with VLT and VRRP. A remote unauthenticated user can cause the network to be flooded leading to Denial of…