Description

Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability. A threat actor does not need any specific privileges to potentially exploit this vulnerability. An attacker could perform a man-in-the-middle attack and eavesdrop on encrypted communications from Cloud Mobility to Cloud Storage devices. Exploitation could lead to the compromise of secret and sensitive information, cloud storage connection downtime, and the integrity of the connection to the Cloud devices.

Published: 2023-01-19
Score: 7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-27776 Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability. A threat actor does not need any specific privileges to potentially exploit this vulnerability. An attacker could perform a man-in-the-middle attack and eavesdrop on encrypted communications from Cloud Mobility to Cloud Storage devices. Exploitation could lead to the compromise of secret and sensitive information, cloud storage connection downtime, and the integrity of the connection to the Cloud devices.
History

Wed, 02 Apr 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Dell Cloud Mobility For Dell Emc Storage
cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published:

Updated: 2025-04-02T14:58:04.777Z

Reserved: 2023-01-17T05:22:17.394Z

Link: CVE-2023-23690

cve-icon Vulnrichment

Updated: 2024-08-02T10:35:33.747Z

cve-icon NVD

Status : Modified

Published: 2023-01-19T12:15:13.623

Modified: 2024-11-21T07:46:40.140

Link: CVE-2023-23690

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses