CVE-2023-25539: Dell Networker

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. This is a high severity vulnerability as the exploitation allows an attacker to take complete control of a system, so Dell recommends customers to upgrade at the earliest opportunity.

Affected products

  • Dell Networker: before 19.7.0.4 (fixed in 19.7.0.4); version 19.7.1 only

Published 2023-05-31. Last modified 2026-06-17.