DSA-2023-419: Security Update for Mobility - E-Lab Navigator Vulnerabilities

Résumé: Mobility - E-Lab Navigator remediation is available for CVE-2023-44296 that could be exploited by malicious users to compromise the affected system.

Cet article concerne Cet article ne concerne pas Cet article n’est associé à aucun produit spécifique. Toutes les versions du produit ne sont pas identifiées dans cet article.

Impact

High

Détails

Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2023-44296 Dell ELab-Navigator, version 3.1.9 contains a hard-coded credential vulnerability. A local attacker could potentially exploit this vulnerability, leading to unauthorized access to sensitive data. Successful exploitation may result in the compromise of confidential user information. 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2023-44296 Dell ELab-Navigator, version 3.1.9 contains a hard-coded credential vulnerability. A local attacker could potentially exploit this vulnerability, leading to unauthorized access to sensitive data. Successful exploitation may result in the compromise of confidential user information. 8.4 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Dell Technologies recommande à tous les clients de prendre en compte à la fois le score de base CVSS et les scores temporels et environnementaux pertinents qui peuvent avoir un impact sur la gravité potentielle associée à une faille de sécurité donnée.

Produits concernés et mesure corrective

CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2023-44296 Mobility - E-Lab Navigator Versions 3.1.8 and 3.1.9 Version 3.2.0 https://play.google.com/store/apps/details?id=com.emc.mobileapps.elabnavigator&pcampaignid=web_shareThis hyperlink is taking you to a website outside of Dell Technologies.
CVEs Addressed Product Affected Versions Remediated Versions Link
CVE-2023-44296 Mobility - E-Lab Navigator Versions 3.1.8 and 3.1.9 Version 3.2.0 https://play.google.com/store/apps/details?id=com.emc.mobileapps.elabnavigator&pcampaignid=web_shareThis hyperlink is taking you to a website outside of Dell Technologies.

Historique des révisions

RevisionDateDescription
1.02023-11-15Initial Release
2.02023-11-17Updates for enhanced presentation with no changes to content

Remerciements

Dell Technologies would like to thank testingforbugs00 for reporting this issue.

Informations connexes

Produits concernés

E-Lab Navigator - Mobile
Propriétés de l’article
Numéro d’article: 000219558
Type d’article: Dell Security Advisory
Dernière modification: 17 Nov 2023
Trouvez des réponses à vos questions auprès d’autres utilisateurs Dell
Services de support
Vérifiez si votre appareil est couvert par les services de support.