CVE-2022-34447

PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:powerpath_management_appliance:3.0:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerpath_management_appliance:3.1:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerpath_management_appliance:3.2:*:*:*:*:*:*:*
cpe:2.3:a:dell:powerpath_management_appliance:3.3:*:*:*:*:*:*:*

History

21 Nov 2024, 07:09

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/000205404 - Vendor Advisory () https://www.dell.com/support/kbdoc/000205404 - Vendor Advisory

07 Nov 2023, 03:48

Type Values Removed Values Added
Summary PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user. PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user.

Information

Published : 2023-02-11 01:23

Updated : 2024-11-21 07:09


NVD link : CVE-2022-34447

Mitre link : CVE-2022-34447

CVE.ORG link : CVE-2022-34447


JSON object : View

Products Affected

dell

  • powerpath_management_appliance
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')