Rewterz
Rewterz Threat Alert – North Korean APT Kimsuky Aka Black Banshee – Active IOCs
December 18, 2023
Rewterz
Rewterz Threat Advisory – CVE-2023-36878 – Microsoft Edge Chromium-based Vulnerability
December 18, 2023

Rewterz Threat Advisory – Multiple Dell PowerProtect DD Vulnerabilities

Severity

High

Analysis Summary

CVE-2023-44277 CVSS:7.8

Dell PowerProtect DD could allow a local authenticated attacker to execute arbitrary commands on the system, caused by an OS command injection vulnerability. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.

CVE-2023-44284 CVSS:4.3

Dell PowerProtect DD is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements to view, add, modify or delete information in the back-end database.

CVE-2023-44285 CVSS:7.8

Dell PowerProtect DD could allow a local authenticated attacker to gain elevated privileges on the system, caused by improper access control vulnerability. By sending a specially crafted request, an authenticated attacker could exploit this vulnerability to escalate privilege.

CVE-2023-44286 CVSS:8.8

Dell PowerProtect DD is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to execute a script in a victim’s Web browser within the security context of the hosting Web site. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials.

CVE-2023-44279 CVSS:6.7

Dell PowerProtect DD could allow a local authenticated attacker to execute arbitrary commands on the system, caused by an OS command injection vulnerability in administrator CLI. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.

Impact

  • Gain Access
  • Data Manipulation
  • Privileges Escalation
  • Cross-Site Scripting

Indicators Of Compromise

CVE

  • CVE-2023-44277
  • CVE-2023-44284
  • CVE-2023-44285
  • CVE-2023-44286
  • CVE-2023-4427

Affected Vendors

Dell

Affected Products

  • Dell PowerProtect DD 7.13.0.10
  • Dell PowerProtect DD LTS 7.10.1.15
  • Dell PowerProtect DD 6.2.1.110
  • Dell PowerProtect DD LTS 7.7.5.25

Remediation

Refer to Dell Security Advisory for patch, upgrade or suggested workaround information.

Dell Security Advisory