CVE-2022-34456

Dell EMC Metro node, Version(s) prior to 7.1, contain a Code Injection Vulnerability. An authenticated nonprivileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:emc_metro_node:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:09

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000204057/dsa-2022-267-dell-emc-metronode-vs5-security-update-for-multiple-third-party-component-vulnerabilities - Vendor Advisory () https://www.dell.com/support/kbdoc/en-us/000204057/dsa-2022-267-dell-emc-metronode-vs5-security-update-for-multiple-third-party-component-vulnerabilities - Vendor Advisory
Summary
  • (es) El nodo Dell EMC Metro, en las versiones anteriores a la 7.1, contiene una vulnerabilidad de inyección de código. Un atacante autenticado y sin privilegios podría explotar esta vulnerabilidad, lo que llevaría a la ejecución de comandos arbitrarios del sistema operativo en la aplicación.

07 Nov 2023, 03:48

Type Values Removed Values Added
Summary Dell EMC Metro node, Version(s) prior to 7.1, contain a Code Injection Vulnerability. An authenticated nonprivileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application. Dell EMC Metro node, Version(s) prior to 7.1, contain a Code Injection Vulnerability. An authenticated nonprivileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application.

Information

Published : 2023-01-18 06:15

Updated : 2024-11-21 07:09


NVD link : CVE-2022-34456

Mitre link : CVE-2022-34456

CVE.ORG link : CVE-2022-34456


JSON object : View

Products Affected

dell

  • emc_metro_node
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')