CVE-2023-39244 Information

Description

DELL ESI (Enterprise Storage Integrator) for SAP LAMA version 10.0 contains an improper access control vulnerability in EHAC component. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unrestricted access to the SOAP APIs.

Reference

https://www.dell.com/support/kbdoc/en-us/000216654/dsa-2023-299-security-update-for-dell-esi-enterprise-storage-integrator-for-sap-lama-multiple-security-vulnerabilities

Share on: