

Rewterz Threat Alert – North Korean APT Kimsuky Aka Black Banshee – Active IOCs
December 18, 2023
Rewterz Threat Advisory – CVE-2023-36878 – Microsoft Edge Chromium-based Vulnerability
December 18, 2023
Rewterz Threat Alert – North Korean APT Kimsuky Aka Black Banshee – Active IOCs
December 18, 2023
Rewterz Threat Advisory – CVE-2023-36878 – Microsoft Edge Chromium-based Vulnerability
December 18, 2023Severity
High
Analysis Summary
CVE-2023-44277 CVSS:7.8
Dell PowerProtect DD could allow a local authenticated attacker to execute arbitrary commands on the system, caused by an OS command injection vulnerability. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
CVE-2023-44284 CVSS:4.3
Dell PowerProtect DD is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements to view, add, modify or delete information in the back-end database.
CVE-2023-44285 CVSS:7.8
Dell PowerProtect DD could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper access control vulnerability. By sending a specially crafted request, an authenticated attacker could exploit this vulnerability to escalate privilege.
CVE-2023-44286 CVSS:8.8
Dell PowerProtect DD is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to execute a script in a victim’s Web browser within the security context of the hosting Web site. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.
CVE-2023-44279 CVSS:6.7
Dell PowerProtect DD could allow a local authenticated attacker to execute arbitrary commands on the system, caused by an OS command injection vulnerability in administrator CLI. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
Impact
- Gain Access
- Data Manipulation
- Privileges Escalation
- Cross-Site Scripting
Indicators Of Compromise
CVE
- CVE-2023-44277
- CVE-2023-44284
- CVE-2023-44285
- CVE-2023-44286
- CVE-2023-4427
Affected Vendors
Dell
Affected Products
- Dell PowerProtect DD 7.13.0.10
- Dell PowerProtect DD LTS 7.10.1.15
- Dell PowerProtect DD 6.2.1.110
- Dell PowerProtect DD LTS 7.7.5.25
Remediation
Refer to Dell Security Advisory for patch, upgrade or suggested workaround information.