Authentication Bypass Vulnerability in Dell EMC CloudLink
CVE-2022-34379
9.4CRITICAL
Summary
Dell EMC CloudLink versions 7.1.2 and earlier are affected by an authentication bypass vulnerability. This flaw allows a remote attacker who has knowledge of active directory usernames to exploit the system, potentially leading to unauthorized access. Ensuring your systems are updated to the latest version is crucial to mitigate this risk and protect sensitive data from possible breaches.
Affected Version(s)
CloudLink < 7.1.3
References
CVSS V3.1
Score:
9.4
Severity:
CRITICAL
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved