Rewterz Threat Alert – GandCrab or .CRAB Ransomware – Active IOCs
April 24, 2023Rewterz Threat Advisory – CVE-2023-20873 – VMware Tanzu Spring Boot Vulnerability
April 25, 2023Rewterz Threat Alert – GandCrab or .CRAB Ransomware – Active IOCs
April 24, 2023Rewterz Threat Advisory – CVE-2023-20873 – VMware Tanzu Spring Boot Vulnerability
April 25, 2023Severity
High
Analysis Summary
CVE-2023-28046 CVSS:8.2
Dell Display Manager could allow a local authenticated attacker to execute arbitrary code on the system, caused by an arbitrary file or folder creation vulnerability during installation. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2023-28047 CVSS:8.2
Dell Display Manager could allow a local authenticated attacker to execute arbitrary code on the system, caused by an arbitrary file or folder creation vulnerability during installation. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Impact
- Code Execution
Indicators Of Compromise
CVE
- CVE-2023-28046
- CVE-2023-28047
Affected Vendors
Dell
Affected Products
- Dell Display Manager 2.1.0
Remediation
Refer to Dell Security Advisory for patch, upgrade or suggested workaround information.