CVE-2022-34363 PUBLISHED

Assigner: dell
Reserved: 23.06.2022 Published: 22.05.2026 Updated: 22.05.2026

Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the  Unisphere for VMAX application running in vApp

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS Score: 6.5

Product Status

Vendor Dell
Product Unisphere for PowerMax
Versions Default: unaffected
  • affected from 0 to 10.0.0.5 EEM: 10.0.0.968 (excl.)
  • affected from 0 to 9.2.3.22 EEM: 9.2.4.26 (excl.)
Vendor Dell
Product Unisphere for PowerMax Virtual Appliance
Versions Default: unaffected
  • affected from 0 to 9.2.3.22 EEM: 9.2.4.26 (excl.)
Vendor Dell
Product Unisphere 360
Versions Default: unaffected
  • affected from 0 to 9.2.3.12 (excl.)

References

Problem Types

  • CWE-285: Improper Authorization CWE