CRITICAL✓ PATCH🇵🇱 Wersja polska

CVE-2022-34379

CVSS 9.4v3.1pub. 2022-09-01upd. 2024-11-21

Dell EMC CloudLink 7.1.2 and all prior versions contain an Authentication Bypass Vulnerability. A remote attacker, with the knowledge of the active directory usernames, could potentially exploit this vulnerability to gain unauthorized access to the system.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
  • Dell Cloudlink

    APP
    Dell
    < 7.1.3
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
Auth Bypass
CWE
References

Related vulnerabilities

CVE-2025-46364CRITICAL9.1PL ✓same product

Dell CloudLink — CLI Escape umożliwia przejęcie kontroli nad systemem

CVE-2025-45378CRITICAL9.1PL ✓same product

Dell CloudLink: command injection przez ucieczkę z restricted shell

CVE-2022-34380CRITICAL9.3PL ✓same product

Authentication Bypass w Dell CloudLink — obejście uwierzytelnienia konsoli systemowej

CVE-2021-36312CRITICAL9.1PL ✓same product

Dell EMC CloudLink — zakodowane hasło umożliwiające nieautoryzowany dostęp

CVE-2021-36313CRITICAL9.1PL ✓same product

Command Injection w Dell EMC CloudLink 7.1 i wcześniejszych