Vulnerability Description
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Smartfabric Os10 | >= 10.5.4.0, < 10.5.4.14 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/en-us/000289970/dsa-2025-070-security-update-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000293638/dsa-2025-069-security-update-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000294091/dsa-2025-079-security-update-Vendor Advisory
- https://www.dell.com/support/kbdoc/en-us/000295014/dsa-2025-068-security-update-Vendor Advisory
FAQ
What is CVE-2024-48017?
CVE-2024-48017 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A hi...
How severe is CVE-2024-48017?
CVE-2024-48017 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-48017?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Smartfabric Os10.