CVE-2024-51532
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/12/2024
Last modified:
29/01/2025
Description
Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to modification of arbitrary system files.
Impact
Base Score 3.x
7.10
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:dell:powerstoreos:*:*:*:*:*:*:*:* | 4.0.1.0-2408234 (excluding) | |
| cpe:2.3:h:dell:powerstore_1000t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_1200t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_3000t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_3200q:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_3200t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_5000t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_500t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_5200t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_7000t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_9000t:-:*:*:*:*:*:*:* | ||
| cpe:2.3:h:dell:powerstore_9200t:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



