CVE-2023-32463

HIGHCVSS 7.5/10EPSS 0.46%

Last modified

CVE-2023-32463 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Dell VxRail, version(s) 8.0.100 and earlier contain a denial-of-service vulnerability in the upgrade functionality. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to degraded performance and system malfunction. . EPSS estimates a 0.46% chance of exploitation in the next 30 days.

Description

Dell VxRail, version(s) 8.0.100 and earlier contain a denial-of-service vulnerability in the upgrade functionality. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to degraded performance and system malfunction.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
0.46%

36.8th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
DellVxrail D560 Firmware< 8.0.100
DellVxrail D560f Firmware< 8.0.100
DellVxrail E460 Firmware< 8.0.100
DellVxrail E560 Firmware< 8.0.100
DellVxrail E560 Vcf Firmware< 8.0.100
DellVxrail E560f Firmware< 8.0.100
DellVxrail E560f Vcf Firmware< 8.0.100
DellVxrail E560n Firmware< 8.0.100
DellVxrail E560n Vcf Firmware< 8.0.100
DellVxrail E660 Firmware< 8.0.100
DellVxrail E660f Firmware< 8.0.100
DellVxrail E660n Firmware< 8.0.100
DellVxrail E665 Firmware< 8.0.100
DellVxrail E665f Firmware< 8.0.100
DellVxrail E665n Firmware< 8.0.100
DellVxrail G560 Firmware< 8.0.100
DellVxrail G560 Vcf Firmware< 8.0.100
DellVxrail G560f Firmware< 8.0.100
DellVxrail G560f Vcf Firmware< 8.0.100
DellVxrail P470 Firmware< 8.0.100
DellVxrail P570 Firmware< 8.0.100
DellVxrail P570 Vcf Firmware< 8.0.100
DellVxrail P570f Firmware< 8.0.100
DellVxrail P570f Vcf Firmware< 8.0.100
DellVxrail P580n Firmware< 8.0.100
DellVxrail P580n Vcf Firmware< 8.0.100
DellVxrail P670f Firmware< 8.0.100
DellVxrail P670n Firmware< 8.0.100
DellVxrail P675f Firmware< 8.0.100
DellVxrail P675n Firmware< 8.0.100
DellVxrail S470 Firmware< 8.0.100
DellVxrail S570 Firmware< 8.0.100
DellVxrail S570 Vcf Firmware< 8.0.100
DellVxrail S670 Firmware< 8.0.100
DellVxrail V470 Firmware< 8.0.100
DellVxrail V570 Firmware< 8.0.100
DellVxrail V570 Vcf Firmware< 8.0.100
DellVxrail V570f Firmware< 8.0.100
DellVxrail V570f Vcf Firmware< 8.0.100
DellVxrail V670f Firmware< 8.0.100
DellVxrail Vd-4000r Firmware< 8.0.100
DellVxrail Vd-4000w Firmware< 8.0.100
DellVxrail Vd-4000z Firmware< 8.0.100
DellVxrail Vd-4510c Firmware< 8.0.100
DellVxrail Vd-4520c Firmware< 8.0.100

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-32463?
Dell VxRail, version(s) 8.0.100 and earlier contain a denial-of-service vulnerability in the upgrade functionality. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to degraded performance and system malfunction.
How severe is CVE-2023-32463?
CVE-2023-32463 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 0.46% probability of exploitation in the next 30 days.
How do I fix CVE-2023-32463?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-32463?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST