6
CVE-2022-34449
- EPSS 0.05%
- Veröffentlicht 11.02.2023 01:23:25
- Zuletzt bearbeitet 21.11.2024 07:09:35
- Quelle security_alert@emc.com
- CVE-Watchlists
- Unerledigt
PowerPath Management Appliance with versions 3.3 & 3.2* contains a Hardcoded Cryptographic Keys vulnerability. Authenticated admin users can exploit the issue that leads to view and modifying sensitive information stored in the application.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Powerpath Management Appliance Version3.2
Dell ≫ Powerpath Management Appliance Version3.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.141 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6 | 0.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
|
| security_alert@emc.com | 6 | 0.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
|
CWE-798 Use of Hard-coded Credentials
The product contains hard-coded credentials, such as a password or cryptographic key.