CVE-2022-45103Sensitive Information Exposure in Dell EMC Solutions Enabler Virtual Appliance

Severity
6.5MEDIUMNVD
EPSS
0.2%
top 52.39%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 18

Description

Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to read arbitrary files on the underlying file system.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages8 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-28xm-8x36-cmvj: Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 92023-01-18
CVEList
CVE-2022-45103: Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 92023-01-18
CVE-2022-45103 — Sensitive Information Exposure in Dell | cvebase