CVE-2023-23689
Last modified
CVE-2023-23689 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource consumption vulnerability. This may allow an unauthenticated network host to impair built-in hardware management functionality and trigger OneFS data protection mechanism causing a denial of service. . EPSS estimates a 0.62% chance of exploitation in the next 30 days.
Description
Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource consumption vulnerability. This may allow an unauthenticated network host to impair built-in hardware management functionality and trigger OneFS data protection mechanism causing a denial of service.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dell | A200 Firmware | 9.0.0.0 |
| Dell | A200 Firmware | 9.1.0.0 |
| Dell | A200 Firmware | 9.2.0.0 |
| Dell | A200 Firmware | 9.2.1.0 |
| Dell | A200 Firmware | 9.3.0.0 |
| Dell | A200 Firmware | 9.4.0.0 |
| Dell | A200 Firmware | 9.5.0.0 |
| Dell | A2000 Firmware | 9.0.0.0 |
| Dell | A2000 Firmware | 9.1.0.0 |
| Dell | A2000 Firmware | 9.2.0.0 |
| Dell | A2000 Firmware | 9.2.1.0 |
| Dell | A2000 Firmware | 9.3.0.0 |
| Dell | A2000 Firmware | 9.4.0.0 |
| Dell | A2000 Firmware | 9.5.0.0 |
| Dell | H400 Firmware | 9.0.0.0 |
| Dell | H400 Firmware | 9.1.0.0 |
| Dell | H400 Firmware | 9.2.0.0 |
| Dell | H400 Firmware | 9.2.1.0 |
| Dell | H400 Firmware | 9.3.0.0 |
| Dell | H400 Firmware | 9.4.0.0 |
| Dell | H400 Firmware | 9.5.0.0 |
| Dell | H500 Firmware | 9.0.0.0 |
| Dell | H500 Firmware | 9.1.0.0 |
| Dell | H500 Firmware | 9.2.0.0 |
| Dell | H500 Firmware | 9.2.1.0 |
| Dell | H500 Firmware | 9.3.0.0 |
| Dell | H500 Firmware | 9.4.0.0 |
| Dell | H500 Firmware | 9.5.0.0 |
| Dell | H600 Firmware | 9.0.0.0 |
| Dell | H600 Firmware | 9.1.0.0 |
| Dell | H600 Firmware | 9.2.0.0 |
| Dell | H600 Firmware | 9.2.1.0 |
| Dell | H600 Firmware | 9.3.0.0 |
| Dell | H600 Firmware | 9.4.0.0 |
| Dell | H600 Firmware | 9.5.0.0 |
| Dell | H5600 Firmware | 9.0.0.0 |
| Dell | H5600 Firmware | 9.1.0.0 |
| Dell | H5600 Firmware | 9.2.0.0 |
| Dell | H5600 Firmware | 9.2.1.0 |
| Dell | H5600 Firmware | 9.3.0.0 |
| Dell | H5600 Firmware | 9.4.0.0 |
| Dell | H5600 Firmware | 9.5.0.0 |
| Dell | F800 Firmware | 9.0.0.0 |
| Dell | F800 Firmware | 9.1.0.0 |
| Dell | F800 Firmware | 9.2.0.0 |
| Dell | F800 Firmware | 9.2.1.0 |
| Dell | F800 Firmware | 9.3.0.0 |
| Dell | F800 Firmware | 9.4.0.0 |
| Dell | F800 Firmware | 9.5.0.0 |
| Dell | F810 Firmware | 9.0.0.0 |
Showing 50 of 56 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-23689?
How severe is CVE-2023-23689?
How do I fix CVE-2023-23689?
Are you affected by CVE-2023-23689?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
