Vulnerability CVE-2023-4401


Published: 2023-10-05

Description:

Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ??more?? command. A local or remote authenticated attacker could potentially exploit this vulnerability, leading to the ability to gain root-level access.

Type:

CWE-77

(Improper Neutralization of Special Elements used in a Command ('Command Injection'))

 References:
https://www.dell.com/support/kbdoc/en-us/000218107/dsa-2023-347-dell-smartfabric-storage-software-security-update-for-multiple-vulnerabilities

Copyright 2026, cxsecurity.com

 

Back to Top