cbcvebase.
CVE-2022-45104
published 2023-02-11

CVE-2022-45104: Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain a command execution vulnerability. A low privileged…

PriorityP260high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
1.38%
68.7th percentile
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain a command execution vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to execute arbitrary commands on the underlying system.

Affected

5 ranges
VendorProductVersion rangeFixed in
dellevasa_provider_virtual_appliance< 9.2.4.159.2.4.15
dellsolutions_enabler_virtual_appliance< 9.2.3.69.2.3.6
dellsolutions_enabler_virtual_appliance< 9.2.4.269.2.4.26
dellunisphere_for_powermax_vapp<= 9.2.3.x
dellunisphere_for_powermax_virtual_appliance< 9.2.4.269.2.4.26
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.