Dell PowerFlex Manager, versions prior to 4.5.1.1, contain an improper certificate validation vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability leading to man-in-the-middle attack in tandem with DNS cache poisoning.
References
Configurations
History
22 Jun 2026, 18:28
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.dell.com/support/kbdoc/en-us/000477538/dsa-2026-066-security-update-for-powerflex-software-multiple-vulnerabilities - Vendor Advisory | |
| CPE | cpe:2.3:a:dell:powerflex_manager:*:*:*:*:*:*:*:* | |
| First Time |
Dell powerflex Manager
Dell |
17 Jun 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-17 15:16
Updated : 2026-06-22 18:28
NVD link : CVE-2024-47477
Mitre link : CVE-2024-47477
CVE.ORG link : CVE-2024-47477
JSON object : View
Products Affected
dell
- powerflex_manager
CWE
CWE-295
Improper Certificate Validation
