cbcvebase.
CVE-2022-29097
published 2022-06-24

CVE-2022-29097: Dell WMS 3.6.1 and below contains a Path Traversal vulnerability in Device API. A remote attacker could potentially exploit this vulnerability, to gain…

medium4.9CVSS 3.1
AVNACLPRHUINSUCHINAN
Dell WMS 3.6.1 and below contains a Path Traversal vulnerability in Device API. A remote attacker could potentially exploit this vulnerability, to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

Affected

2 ranges
VendorProductVersion rangeFixed in
dellwyse_management_suite<= 3.6.1
dellwyse_management_suite>= unspecified < 3.6.13.6.1