Privilege Escalation Vulnerability in Unisphere for PowerMax by Dell
CVE-2022-31233

6.3MEDIUM

Key Information:

Vendor
Dell
Vendor
CVE Published:
27 June 2022

Summary

Unisphere for PowerMax prior to version 9.2.3.15 has a vulnerability that allows an adjacent malicious user to exploit insufficient access control mechanisms. By leveraging this flaw, the attacker could escalate their privileges, gaining unauthorized access to restricted functionalities that should otherwise be unavailable to them.

Affected Version(s)

Unisphere for PowerMax < 9.2.3.15

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.