Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain a command execution vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to execute arbitrary commands on the underlying system.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2023-02-10 17:23
Updated : 2023-02-21 07:55
NVD link : CVE-2022-45104
Mitre link : CVE-2022-45104
JSON object : View
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Products Affected
dell
- unisphere_for_powermax_virtual_appliance
- solutions_enabler_virtual_appliance
- evasa_provider_virtual_appliance