Skip to content

CVE-2023-24568 | NetWorker

Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which could disallow replacing CA signed certificates. .This CVE has a CVSS3.1 score of 5 and a Base Severity of MEDIUM.

InfoDetails
CVE IDCVE-2023-24568
CVE StatePUBLISHED
BaseScore5
BaseSeverityMEDIUM
VectorStringCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N
VersionNA

References for CVE-2023-24568 :
https://www.dell.com/support/kbdoc/en-us/000210963/dsa-2023-059-dell-networker-security-update-for-a-rabbitmq-vulnerability-related-to-improper-validation-of-hostname-in-rabbitmq-startup-script-which-fails-to-replace-ca-signed-certificates

Metric TypeMetric Score
AttackVector(AV)NETWORK
AttackComplexity(AC)LOW
PrivilegesRequired(PR)LOW
UserInteraction(UI)NONE
Scope(S)CHANGED
Confidentiality(C)NONE
Availability(A)NONE
Integrity(I)LOW