CVE-2022-31231
EUVD-2022-5411322.05.2026, 16:16
Dell ECS, versions 3.5 and 3.6, contain an Improper Access Control in the Identity and Access Management (IAM) module. A remote unauthenticated attacker may potentially exploit this vulnerability, leading to gaining read access to unauthorized data.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dell | elastic_cloud_storage | 𝑥 < 3.5.1.7 |
| dell | elastic_cloud_storage | 3.6.0.0 ≤ 𝑥 < 3.6.2.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration