PT-2022-6353 · Dell Emc · Dell Emc Networker
Published
2022-07-21
·
Updated
2022-09-07
·
CVE-2022-34368
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Dell EMC NetWorker versions 19.2.1.x through 19.7.0.0
Description
The issue is related to an Improper Handling of Insufficient Permissions or Privileges, which could allow an authenticated non-admin user to gain access to restricted resources. This could potentially lead to unauthorized access to confidential information.
Recommendations
For versions 19.2.1.x through 19.7.0.0, consider restricting access to sensitive resources until a patch is available.
As a temporary workaround, limit the privileges of non-admin users to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Handling of Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dell Emc Networker