Vulnerability Description
Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Evasa Provider Virtual Appliance | < 9.2.3.7 |
| Dell | Solutions Enabler | < 9.2.3.4 |
| Dell | Solutions Enabler Virtual Appliance | < 9.2.3.4 |
| Dell | Unisphere 360 | < 9.2.3.6 |
| Dell | Unisphere For Powermax | < 9.2.3.15 |
| Dell | Unisphere For Powermax Virtual Appliance | < 9.2.3.15 |
| Dell | Vasa | < 9.2.3.15 |
| Dell | Powermax Os | 5978 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/kbdoc/000200975PatchVendor Advisory
- https://www.dell.com/support/kbdoc/000200975PatchVendor Advisory
FAQ
What is CVE-2022-31233?
CVE-2022-31233 is a vulnerability with a CVSS score of 6.3 (MEDIUM). Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and acc...
How severe is CVE-2022-31233?
CVE-2022-31233 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-31233?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Evasa Provider Virtual Appliance, Dell Solutions Enabler, Dell Solutions Enabler Virtual Appliance, Dell Unisphere 360, Dell Unisphere For Powermax.