CVE-2022-33924Improper Access Control in Dell Wyse Management Suite

Severity
5.3MEDIUMNVD
CNA4.3
EPSS
0.1%
top 74.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 10
Latest updateAug 11

Description

Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability with which an attacker with no access to create rules could potentially exploit this vulnerability and create rules.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages2 packages

CVEListV5dell/wyse_management_suiteunspecified3.7

🔴Vulnerability Details

2
GHSA
GHSA-r365-x6fw-qg42: Dell Wyse Management Suite 32022-08-11
CVEList
CVE-2022-33924: Dell Wyse Management Suite 32022-08-10
CVE-2022-33924 — Improper Access Control in Dell | cvebase