cbcvebase.
CVE-2023-43082
published 2023-11-22

CVE-2023-43082: Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by a third-party public…

medium5.9CVSS 3.1
AVNACHPRNUINSUCHINAN
Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate signed by a third-party public Certificate Authority, the vCenter CA could be spoofed by an attacker who can obtain a CA-signed certificate.

Affected

4 ranges
VendorProductVersion rangeFixed in
dellunity
dellunity_operating_environment< 5.3.0.0.5.1205.3.0.0.5.120
dellunity_xt_operating_environment< 5.3.0.0.5.1205.3.0.0.5.120
dellunityvsa_operating_environment< 5.3.0.0.5.1205.3.0.0.5.120