Show filters
1,326 Total Results
Displaying 161-170 of 1,326
Sort by:
Attacker Value
Unknown

CVE-2022-34451

Disclosure Date: February 11, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Stored Cross-site Scripting Vulnerability. An authenticated admin user could potentially exploit this vulnerability, to hijack user sessions or trick a victim application user into unknowingly send arbitrary requests to the server.
Attacker Value
Unknown

CVE-2022-34450

Disclosure Date: February 11, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with version 3.3 contains Privilege Escalation vulnerability. An authenticated admin user could potentially exploit this issue and gain unrestricted control/code execution on the system as root.
Attacker Value
Unknown

CVE-2022-34449

Disclosure Date: February 11, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with versions 3.3 & 3.2* contains a Hardcoded Cryptographic Keys vulnerability. Authenticated admin users can exploit the issue that leads to view and modifying sensitive information stored in the application.
Attacker Value
Unknown

CVE-2022-34448

Disclosure Date: February 11, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Cross-site Request Forgery vulnerability. An unauthenticated non-privileged user could potentially exploit the issue and perform any privileged state-changing actions.
Attacker Value
Unknown

CVE-2022-34447

Disclosure Date: February 11, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user.
Attacker Value
Unknown

CVE-2022-34446

Disclosure Date: February 11, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with versions 3.3 & 3.2* contains Authorization Bypass vulnerability. An authenticated remote user with limited privileges (e.g., of role Monitoring) can exploit this issue and gain access to sensitive information, and modify the configuration.
Attacker Value
Unknown

CVE-2022-34452

Disclosure Date: February 10, 2023 (last updated February 24, 2025)
PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerability. An Authenticated admin user can able to exploit the issue and view sensitive information stored in the logs.
Attacker Value
Unknown

CVE-2022-45103

Disclosure Date: January 18, 2023 (last updated February 24, 2025)
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to read arbitrary files on the underlying file system.
Attacker Value
Unknown

CVE-2022-46414

Disclosure Date: December 04, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Unauthenticated remote command execution can occur via the management portal.
Attacker Value
Unknown

CVE-2022-46413

Disclosure Date: December 04, 2022 (last updated October 08, 2023)
An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Authenticated remote command execution can occur via the management portal.