PT-2022-22163 · Dell · Dell Hybrid Client

Published

2022-09-30

·

Updated

2022-10-05

·

CVE-2022-34429

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell Hybrid Client versions prior to 1.8
Description The issue allows a guest privilege attacker to potentially exploit a Zip Slip Vulnerability in the UI, leading to system files modification.
Recommendations For versions prior to 1.8, update to version 1.8 or later to resolve the issue.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2022-34429

Affected Products

Dell Hybrid Client