CVE-2024-51532
HIGHDescription
Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to modification of arbitrary system files.
Is your site exposed to CVE-2024-51532?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| dell | powerstoreos |
| dell | powerstore_1000t |
| dell | powerstore_1200t |
| dell | powerstore_3000t |
| dell | powerstore_3200q |
| dell | powerstore_3200t |
| dell | powerstore_5000t |
| dell | powerstore_500t |
| dell | powerstore_5200t |
| dell | powerstore_7000t |
| dell | powerstore_9000t |
| dell | powerstore_9200t |
References
Frequently Asked Questions
What is CVE-2024-51532? +
How severe is CVE-2024-51532? +
What products are affected by CVE-2024-51532? +
How do I check if I'm vulnerable to CVE-2024-51532? +
Related Vulnerabilities
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Nomachine allows Argument Injection.This issue affects Nomachine: before …
BuildKit custom frontends or clients using the raw low-level API can set git.checkoutbundle=true when checking out Git sources. If the …
Atheos is a self-hosted browser-based cloud integrated development environment. Prior to version 6.0.4, improper use of `escapeshellcmd()` in `/components/codegit/traits/execute.php` allows …
XZ Utils provide a general-purpose data-compression library plus command-line tools. When built for native Windows (MinGW-w64 or MSVC), the command …
Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, src/core/git/gitCommand.ts execGitShallowClone passes the --remote-branch value directly …
uniget is a universal installer and updater for (container) tools. Prior to 0.27.6, the hooks edit command in cmd/uniget/hooks.go parses …