Dell PowerStore, versions prior to 3.0.0.0, contains an OS Command Injection vulnerability in PowerStore T environment. A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Dell
Subscribe
|
Emc Powerstore 1200t
Subscribe
Emc Powerstore 1200t Firmware
Subscribe
Emc Powerstore 3200t
Subscribe
Emc Powerstore 3200t Firmware
Subscribe
Emc Powerstore 500t
Subscribe
Emc Powerstore 500t Firmware
Subscribe
Emc Powerstore 5200t
Subscribe
Emc Powerstore 5200t Firmware
Subscribe
Emc Powerstore 9200t
Subscribe
Emc Powerstore 9200t Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-36959 | Dell PowerStore, versions prior to 3.0.0.0, contains an OS Command Injection vulnerability in PowerStore T environment. A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.dell.com/support/kbdoc/000201283 |
|
History
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dell
Published:
Updated: 2024-09-16T17:57:59.623Z
Reserved: 2022-06-17T00:00:00
Link: CVE-2022-33923
No data.
Status : Modified
Published: 2022-07-21T04:15:12.987
Modified: 2024-11-21T07:08:36.993
Link: CVE-2022-33923
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD