CVE-2022-31233

Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.3 MEDIUM
ADJACENT_NETWORK
LOW
LOW
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
dellCNA
6.3 MEDIUM
ADJACENT_NETWORK
LOW
LOW
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 26%
VendorProductVersion
dellevasa_provider_virtual_appliance
𝑥
< 9.2.3.7
dellsolutions_enabler
𝑥
< 9.2.3.4
dellsolutions_enabler_virtual_appliance
𝑥
< 9.2.3.4
dellunisphere_360
𝑥
< 9.2.3.6
dellunisphere_for_powermax
𝑥
< 9.2.3.15
dellunisphere_for_powermax_virtual_appliance
𝑥
< 9.2.3.15
dellvasa
𝑥
< 9.2.3.15
𝑥
= Vulnerable software versions