PT-2022-21910 · Dell · Dell Geodrive

Published

2022-10-12

·

Updated

2022-10-14

·

CVE-2022-33920

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell GeoDrive versions prior to 2.2
Description The issue allows a low privilege attacker to potentially exploit an Unquoted File Path vulnerability, leading to the execution of arbitrary code in the SYSTEM security context.
Recommendations For versions prior to 2.2, update to version 2.2 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

CVE-2022-33920

Affected Products

Dell Geodrive