Impact
Dell SmartFabric OS10 Software versions prior to 10.5.6.14 contain a command injection flaw (CWE-77). Based on the description, it is inferred that a high privileged attacker who can access the system remotely could inject and execute arbitrary OS commands. The vulnerability allows the attacker to compromise the integrity and availability of the affected device.
Affected Systems
Dell SmartFabric OS10 devices running firmware before version 10.5.6.14 are affected. Based on the description, it is inferred that the flaw targets systems exposed to remote management interfaces that allow privileged users to issue commands.
Risk and Exploitability
The CVSS score of 5 indicates a moderate risk level. The EPSS score is 1%, indicating a modest exploit probability, and the vulnerability is not listed in the CISA KEV catalog. The attack requires remote access with high privileges; compromise of remote management credentials is the primary prerequisite. Once exploited, an attacker can gain full command execution capabilities on the device.
OpenCVE Enrichment