ZeroHour

CVE-2022-33923

CVSS 3.1
7.8 high
EPSS
<1%p30
Published
()
Modified
Description

Dell PowerStore, versions prior to 3.0.0.0, contains an OS Command Injection vulnerability in PowerStore T environment. A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker.

Vendors
dell
Products
emc powerstore 500t firmware, emc powerstore 1200t firmware, emc powerstore 3200t firmware, emc powerstore 5200t firmware, emc powerstore 9200t firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.