PT-2022-15523 · Dell Emc · Dell Emc Powerstore

Published

2022-07-20

·

Updated

2022-08-01

·

CVE-2022-22555

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell EMC PowerStore (affected versions not specified)
Description The issue is an OS command injection vulnerability. A locally authenticated attacker could potentially exploit this, leading to the execution of arbitrary OS commands on the PowerStore underlying OS with the privileges of the vulnerable application. Exploitation may lead to an elevation of privilege.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2022-22555

Affected Products

Dell Emc Powerstore