Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-34397


Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below contains an authorization bypass vulnerability, allowing users to perform actions in which they are not authorized.


Published

2023-02-13T10:15:13.470

Last Modified

2024-11-21T07:09:26.017

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.9 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-863
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application dell evasa_provider_virtual_appliance < 9.2.4.15 Yes
Application dell solutions_enabler_virtual_appliance < 9.2.3.6 Yes
Application dell solutions_enabler_virtual_appliance < 9.2.4.26 Yes
Application dell unisphere_for_powermax_virtual_appliance < 9.2.3.22 Yes
Application dell unisphere_for_powermax_virtual_appliance < 9.2.4.26 Yes

References