CVE-2024-45764

Published Nov 8, 2024

Last updated 4 days ago

Overview

Description
Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) a Missing Critical Step in Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Protection mechanism bypass. This is a critical severity vulnerability so Dell recommends customers to upgrade at the earliest opportunity.
Source
security_alert@emc.com
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

nvd@nist.gov
NVD-CWE-Other
security_alert@emc.com
CWE-304

Social media

Hype score
Not currently trending
  1. 🚨 Unpatched #Dell Enterprise SONiC #OS Leaves Networks Vulnerable (#CVE-2024-45764) https://t.co/kf36YZKSa5

    @UndercodeNews

    13 Nov 2024

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 🚨🚨🚨 SONiC OSでCriticalな脆弱性3件。 もし認証バイパスと認証ありのコマンドインジェクションを組み合わせられるなら危険ですね CVE-2024-45763 CVE-2024-45764 CVE-2024-45765 DSA-2024-449: Security Update for Dell Enterprise SONiC Distribution Vulnerabilities https://t.co/Tfw0VqUTcP

    @autumn_good_35

    12 Nov 2024

    554 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    1 Quote

  3. The severity is increased for this new vulnerability affecting Dell Enterprise SONiC OS (CVE-2024-45764) https://t.co/ntbJ0vpCpt

    @vuldb

    9 Nov 2024

    0 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2024-45764 Critical Authentication Bypass in Dell Enterprise SONiC OS Versions 4.1.x and 4.2.x Dell Enterprise SONiC OS versions 4.1.x and 4.2.x have a problem with missing a crucial step in authentication. A... https://t.co/wYZZROZu3j

    @VulmonFeeds

    8 Nov 2024

    20 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 Critical Vulnerabilities in Dell Enterprise SONiC OS 🚨 💻 CVE-2024-45763 - OS Command Injection, requires high privilege: https://t.co/nq9ufAOScy 💻 CVE-2024-45764 - Authentication flaw, unauthenticated access. Risk: Security bypass: https://t.co/bR3XhDbqRj 👇

    @vulmoncom

    8 Nov 2024

    3 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  6. CVE-2024-45764 Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) a Missing Critical Step in Authentication vulnerability. An unauthenticated attacker with remote access … https://t.co/WAxU0bWpM6

    @CVEnew

    8 Nov 2024

    174 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. [CVE-2024-45764: CRITICAL] Critical cyber security vulnerability detected in Dell Enterprise SONiC OS version(s) 4.1.x and 4.2.x. Failure to update could allow remote attackers to bypass protection mechanisms. Up...#cybersecurity,#vulnerability https://t.co/jFuUsmLFgZ https://t.c

    @CveFindCom

    8 Nov 2024

    7 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations