PT-2022-6353 · Dell Emc · Dell Emc Networker

Published

2022-07-21

·

Updated

2022-09-07

·

CVE-2022-34368

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell EMC NetWorker versions 19.2.1.x through 19.7.0.0
Description The issue is related to an Improper Handling of Insufficient Permissions or Privileges, which could allow an authenticated non-admin user to gain access to restricted resources. This could potentially lead to unauthorized access to confidential information.
Recommendations For versions 19.2.1.x through 19.7.0.0, consider restricting access to sensitive resources until a patch is available. As a temporary workaround, limit the privileges of non-admin users to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Handling of Exceptional Conditions

Weakness Enumeration

Related Identifiers

BDU:2023-01011
CVE-2022-34368

Affected Products

Dell Emc Networker