Authentication Bypass Vulnerability in Dell EMC CloudLink
CVE-2022-34379

9.4CRITICAL

Key Information:

Vendor
Dell
Vendor
CVE Published:
1 September 2022

Summary

Dell EMC CloudLink versions 7.1.2 and earlier are affected by an authentication bypass vulnerability. This flaw allows a remote attacker who has knowledge of active directory usernames to exploit the system, potentially leading to unauthorized access. Ensuring your systems are updated to the latest version is crucial to mitigate this risk and protect sensitive data from possible breaches.

Affected Version(s)

CloudLink < 7.1.3

References

CVSS V3.1

Score:
9.4
Severity:
CRITICAL
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.