Improper Access Control in Dell Wyse Management Suite
CVE-2022-33926
7.1HIGH
Summary
Dell Wyse Management Suite versions 3.6.1 and earlier have a significant improper access control flaw that allows a remote attacker to exploit the system. Through this vulnerability, an attacker can retain unauthorized access to a file repository even after their access rights have been revoked. Organizations using the affected versions should prioritize security updates to mitigate the risk associated with this vulnerability.
Affected Version(s)
Wyse Management Suite < 3.7
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved