Start a Conversation

Unsolved

D

1 Rookie

 • 

1 Message

175

August 23rd, 2024 02:44

Dell OMSA - CVE-2024-7264

Hi,

I'm looking at an issue raised by Tenable (CVE-2024-7264), I was wondering if there are plans for an upgrade to Dell OMSA to address this?


Thanks

Curl 7.32.0 < 8.9.1 DoS (CVE-2024-7264)


1 Rookie

 • 

5 Posts

September 24th, 2024 14:47

There is supposed to be one more final release of OMSA at the end of this month, so cross your fingers.

Reference: OpenManage Server Administrator (OMSA) is going End of Life (EOL) | Dell US

1 Rookie

 • 

19 Posts

August 6th, 2025 09:57

  • Dell OMSA is not listed in the affected products for CVE‑2024‑7264 Dell.

  • OMSA carries two different vulnerabilities:

    • CVE‑2024‑45760: Improper access control (CVSS ~4.3)

    • CVE‑2024‑45761: Improper input validation (CVSS ~5.4)

  • Both impact OMSA versions 11.0.1.0 and earlier. These are mitigated in version 11.1.0.0 and later

No Events found!

Top