CVE-2022-33926Improper Access Control in Dell Wyse Management Suite

Severity
6.5MEDIUMNVD
CNA7.1
EPSS
0.3%
top 51.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 10
Latest updateAug 11

Description

Dell Wyse Management Suite 3.6.1 and below contains an improper access control vulnerability. A remote malicious user could exploit this vulnerability in order to retain access to a file repository after it has been revoked.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5dell/wyse_management_suiteunspecified3.7

🔴Vulnerability Details

2
GHSA
GHSA-6r4c-273j-37ff: Dell Wyse Management Suite 32022-08-11
CVEList
CVE-2022-33926: Dell Wyse Management Suite 32022-08-10
CVE-2022-33926 — Improper Access Control in Dell | cvebase