CVE-2022-34456

Dell EMC Metro node, Version(s) prior to 7.1, contain a Code Injection Vulnerability. An authenticated nonprivileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:emc_metro_node:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:09

Type Values Removed Values Added
Summary
  • (es) El nodo Dell EMC Metro, en las versiones anteriores a la 7.1, contiene una vulnerabilidad de inyección de código. Un atacante autenticado y sin privilegios podría explotar esta vulnerabilidad, lo que llevaría a la ejecución de comandos arbitrarios del sistema operativo en la aplicación.
References () https://www.dell.com/support/kbdoc/en-us/000204057/dsa-2022-267-dell-emc-metronode-vs5-security-update-for-multiple-third-party-component-vulnerabilities - Vendor Advisory () https://www.dell.com/support/kbdoc/en-us/000204057/dsa-2022-267-dell-emc-metronode-vs5-security-update-for-multiple-third-party-component-vulnerabilities - Vendor Advisory

Information

Published : 2023-01-18 06:15

Updated : 2024-11-21 07:09


NVD link : CVE-2022-34456

Mitre link : CVE-2022-34456

CVE.ORG link : CVE-2022-34456


JSON object : View

Products Affected

dell

  • emc_metro_node
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')