Improper Handling of Permissions in Dell EMC NetWorker
CVE-2022-34368

6.1MEDIUM

Key Information:

Vendor
Dell
Vendor
CVE Published:
30 August 2022

Summary

Dell EMC NetWorker versions 19.2.1.x through 19.7.0.0 are susceptible to a vulnerability that allows authenticated non-administrative users to exploit insufficient permissions. This can enable unauthorized access to restricted resources, potentially leading to significant security risks. Users of the affected NetWorker versions are advised to apply the necessary updates to mitigate these risks.

Affected Version(s)

NetWorker Management Console < 19.6.1.2

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.