CVE-2022-31233

Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.3 MEDIUM
ADJACENT_NETWORK
LOW
LOW
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
dellevasa_provider_virtual_appliance
𝑥
< 9.2.3.7
dellsolutions_enabler
𝑥
< 9.2.3.4
dellsolutions_enabler_virtual_appliance
𝑥
< 9.2.3.4
dellunisphere_360
𝑥
< 9.2.3.6
dellunisphere_for_powermax
𝑥
< 9.2.3.15
dellunisphere_for_powermax_virtual_appliance
𝑥
< 9.2.3.15
dellvasa
𝑥
< 9.2.3.15
𝑥
= Vulnerable software versions