Dell EMC CloudLink 7.1.2 and all prior versions contain an Authentication Bypass Vulnerability. A remote attacker, with the knowledge of the active directory usernames, could potentially exploit this vulnerability to gain unauthorized access to the system.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:HDell Cloudlink
APPDell< 7.1.3
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
Auth Bypass
Related vulnerabilities
CVE-2025-46364CRITICAL9.1PL ✓same product
Dell CloudLink — CLI Escape umożliwia przejęcie kontroli nad systemem
CVE-2025-45378CRITICAL9.1PL ✓same product
Dell CloudLink: command injection przez ucieczkę z restricted shell
CVE-2022-34380CRITICAL9.3PL ✓same product
Authentication Bypass w Dell CloudLink — obejście uwierzytelnienia konsoli systemowej
CVE-2021-36312CRITICAL9.1PL ✓same product
Dell EMC CloudLink — zakodowane hasło umożliwiające nieautoryzowany dostęp
CVE-2021-36313CRITICAL9.1PL ✓same product
Command Injection w Dell EMC CloudLink 7.1 i wcześniejszych