PT-2022-22166 · Dell · Dell Hybrid Client

Published

2022-10-11

·

Updated

2022-10-13

·

CVE-2022-34431

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Dell Hybrid Client versions prior to 1.8
Description The issue concerns a guest user profile corruption vulnerability. It could be exploited by a WMS privilege attacker, potentially leading to the DHC system becoming inaccessible.
Recommendations For versions prior to 1.8, update to version 1.8 or later to resolve the issue.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-34431

Affected Products

Dell Hybrid Client