CVE-2022-31233

EUVD-2022-52816
Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.3 MEDIUM
ADJACENT_NETWORK
LOW
LOW
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
dellCNA
6.3 MEDIUM
ADJACENT_NETWORK
LOW
LOW
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 29%
Affected Products (NVD)
VendorProductVersion
dellevasa_provider_virtual_appliance
𝑥
< 9.2.3.7
dellsolutions_enabler
𝑥
< 9.2.3.4
dellsolutions_enabler_virtual_appliance
𝑥
< 9.2.3.4
dellunisphere_360
𝑥
< 9.2.3.6
dellunisphere_for_powermax
𝑥
< 9.2.3.15
dellunisphere_for_powermax_virtual_appliance
𝑥
< 9.2.3.15
dellvasa
𝑥
< 9.2.3.15
𝑥
= Vulnerable software versions