CVE-2022-33931Improper Access Control in Dell Wyse Management Suite

Severity
5.3MEDIUMNVD
CNA6.3
EPSS
0.3%
top 47.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 10
Latest updateAug 11

Description

Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An attacker with no access to Alert Classification page could potentially exploit this vulnerability, leading to the change the alert categories.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages2 packages

CVEListV5dell/wyse_management_suiteunspecified3.7

🔴Vulnerability Details

2
GHSA
GHSA-3jvf-6wvh-pm32: Dell Wyse Management Suite 32022-08-11
CVEList
CVE-2022-33931: Dell Wyse Management Suite 32022-08-10
CVE-2022-33931 — Improper Access Control in Dell | cvebase