Vulnerability Details CVE-2024-38486
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.7%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-38486
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.10
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.4
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.5
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.6
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.7
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.8
-
cpe:2.3:o:dell:smartfabric_os10:10.5.5.9
-
cpe:2.3:o:dell:smartfabric_os10:10.5.6.0
-
cpe:2.3:o:dell:smartfabric_os10:10.5.6.1
-
cpe:2.3:o:dell:smartfabric_os10:10.5.6.2
-
cpe:2.3:o:dell:smartfabric_os10:10.5.6.3