CVE-2023-39244
CVE-2023-39244
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.3EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Feb 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote unauthenticated attacker could potentially exploit this vulnerability by eavesdropping the network traffic to gain admin level credentials.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
Dell · ESI (Enterprise Storage Integrator) for SAP LAMAWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →