Improper Access Control in Dell ECS Products
CVE-2022-31231
5.9MEDIUM
What is CVE-2022-31231?
Dell ECS versions 3.5 and 3.6 are affected by an improper access control vulnerability in the Identity and Access Management (IAM) module. This flaw allows remote unauthenticated attackers to exploit the system, potentially gaining unauthorized read access to sensitive data.
Affected Version(s)
ECS 0 < 3.5.1.7
ECS 0 < 3.6.2.4