6.3
CVE-2022-33931
- EPSS 0.24%
- Veröffentlicht 10.08.2022 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:08:38
- Quelle security_alert@emc.com
- CVE-Watchlists
- Unerledigt
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An attacker with no access to Alert Classification page could potentially exploit this vulnerability, leading to the change the alert categories.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Wyse Management Suite Version < 3.8.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.24% | 0.469 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
|
| security_alert@emc.com | 6.3 | 1.8 | 4 |
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.