CVE-2024-30473

Dell ECS, versions prior to 3.8.1, contain a privilege elevation vulnerability in user management. A remote high privileged attacker could potentially exploit this vulnerability, gaining access to unauthorized end points.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:elastic_cloud_storage:*:*:*:*:*:*:*:*

History

04 Feb 2025, 17:22

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Dell elastic Cloud Storage
Dell
CPE cpe:2.3:a:dell:elastic_cloud_storage:*:*:*:*:*:*:*:*
References () https://www.dell.com/support/kbdoc/en-us/000227051/dsa-2024-239-security-update-dell-ecs-3-8-1-1-for-multiple-security-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000227051/dsa-2024-239-security-update-dell-ecs-3-8-1-1-for-multiple-security-vulnerabilities - Vendor Advisory

21 Nov 2024, 09:11

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000227051/dsa-2024-239-security-update-dell-ecs-3-8-1-1-for-multiple-security-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000227051/dsa-2024-239-security-update-dell-ecs-3-8-1-1-for-multiple-security-vulnerabilities -

19 Jul 2024, 13:01

Type Values Removed Values Added
Summary
  • (es) Dell ECS, versiones anteriores a la 3.8.1, contienen una vulnerabilidad de elevación de privilegios en la administración de usuarios. Un atacante remoto con altos privilegios podría explotar esta vulnerabilidad y obtener acceso a endpoints no autorizados.

18 Jul 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-18 16:15

Updated : 2025-02-04 17:22


NVD link : CVE-2024-30473

Mitre link : CVE-2024-30473

CVE.ORG link : CVE-2024-30473


JSON object : View

Products Affected

dell

  • elastic_cloud_storage
CWE
CWE-269

Improper Privilege Management

NVD-CWE-noinfo