Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabled by Admin user from UI). A remote low privileged attacker could potentially exploit this vulnerability, leading to the execution of certain APIs applicable only for Admin Users on the application's backend database that could potentially allow an unauthorized user access to restricted resources.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2024-06-13T15:05:01.940Z

Updated: 2024-08-02T01:03:51.512Z

Reserved: 2024-03-13T15:42:12.960Z

Link: CVE-2024-28969

cve-icon Vulnrichment

Updated: 2024-08-02T01:03:51.512Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-13T15:15:52.183

Modified: 2024-08-06T15:28:06.497

Link: CVE-2024-28969

cve-icon Redhat

No data.