CVE-2022-29082

Dell EMC NetWorker versions 19.1.x, 19.1.0.x, 19.1.1.x, 19.2.x, 19.2.0.x, 19.2.1.x 19.3.x, 19.3.0.x, 19.4.x, 19.4.0.x, 19.5.x,19.5.0.x, 19.6 and 19.6.0.1 and 19.6.0.2 contain an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port 5671 which could allow remote attackers to spoof certificates.
References
Link Resource
https://www.dell.com/support/kbdoc/000198987 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:emc_networker:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:emc_networker:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:emc_networker:19.6.1:*:*:*:*:*:*:*

History

08 Jun 2022, 15:25

Type Values Removed Values Added
CPE cpe:2.3:a:dell:emc_networker:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:emc_networker:19.6.1:*:*:*:*:*:*:*
CWE CWE-295
CVSS v2 : unknown
v3 : unknown
v2 : 4.9
v3 : 4.6
First Time Dell emc Networker
Dell
References (MISC) https://www.dell.com/support/kbdoc/000198987 - (MISC) https://www.dell.com/support/kbdoc/000198987 - Vendor Advisory

26 May 2022, 17:25

Type Values Removed Values Added
New CVE

Information

Published : 2022-05-26 16:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-29082

Mitre link : CVE-2022-29082

CVE.ORG link : CVE-2022-29082


JSON object : View

Products Affected

dell

  • emc_networker
CWE
CWE-295

Improper Certificate Validation

CWE-297

Improper Validation of Certificate with Host Mismatch