PublicCVE

CVE-2023-32478

CRITICAL9.0JSON exportCreate alert

Description

Dell PowerStore versions prior to 3.5.0.1 contain an insertion of sensitive information into log file vulnerability. A high privileged malicious user could potentially exploit this vulnerability, leading to sensitive information disclosure.

CVSS breakdown

CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
High
Availability
High

Affected products

  • Dell / PowerStoreVersions prior to 3.5.0.1-2083289 – Versions prior to 3.5.0.1-2083289