cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-25539,https://securityvulnerability.io/vulnerability/CVE-2023-25539,OS Command Injection Vulnerability in Dell NetWorker Software,"Dell NetWorker version 19.6.1.2 is vulnerable to an OS command injection flaw in the NetWorker client. This security issue allows remote unauthenticated attackers to execute arbitrary OS commands on the underlying system with the same privileges as the application. As a result, an attacker could gain complete control of the affected system. To mitigate this risk, Dell recommends that customers upgrade to a secure version as soon as possible.",Dell,NetWorker NVE,9.8,CRITICAL,0.0027099999133497477,false,,false,false,false,,,false,false,,2023-05-31T05:15:00.000Z,0 CVE-2023-24567,https://securityvulnerability.io/vulnerability/CVE-2023-24567,Version Disclosure Vulnerability in Dell NetWorker Software,"The vulnerability found in Dell NetWorker allows a user with remote access to the NetWorker clients to obtain sensitive version information of the RabbitMQ component. This may enable attackers to tailor their exploits against specific targets, potentially compromising system integrity and leading to unauthorized access. Organizations utilizing affected versions should take immediate steps to apply security updates and mitigate risks associated with this vulnerability.",Dell,"Dell NetWorker, NVE",6.5,MEDIUM,0.0006799999973736703,false,,false,false,false,,,false,false,,2023-03-01T15:15:00.000Z,0 CVE-2023-25544,https://securityvulnerability.io/vulnerability/CVE-2023-25544,Apache Tomcat Version Disclosure Vulnerability in Dell NetWorker,"Dell NetWorker versions 19.5 and earlier exhibit a vulnerability related to version disclosure of Apache Tomcat. This flaw allows users with remote access to the NetWorker clients to potentially exploit the weakness, leading to targeted attacks specific to the disclosed version. Awareness of this vulnerability is crucial for system administrators and security professionals to safeguard their environments and mitigate risks associated with unauthorized access.",Dell,"Dell NetWorker, NVE",6.5,MEDIUM,0.0006799999973736703,false,,false,false,false,,,false,false,,2023-03-01T15:15:00.000Z,0 CVE-2023-24576,https://securityvulnerability.io/vulnerability/CVE-2023-24576,Unauthenticated Remote Code Execution Vulnerability in EMC NetWorker,"EMC NetWorker is potentially exposed to a vulnerability that allows for unauthenticated remote code execution via the NetWorker Client execution service (nsrexecd). This issue enables an attacker to execute arbitrary code on the affected system without requiring authentication, posing a significant threat to the security of the network and data integrity.",Dell,"NetWorker, NVE",9.8,CRITICAL,0.007060000207275152,false,,false,false,false,,,false,false,,2023-02-03T19:15:00.000Z,0