Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user might access certain pro license features for which this admin is not authorized in order to configure user controlled external entities.
References
Configurations
History
07 Nov 2023, 03:55
Type | Values Removed | Values Added |
---|---|---|
Summary | Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user might access certain pro license features for which this admin is not authorized in order to configure user controlled external entities. |
21 Feb 2023, 18:54
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:dell:wyse_management_suite:*:*:*:*:*:*:*:* | |
CWE | NVD-CWE-Other | |
First Time |
Dell wyse Management Suite
Dell |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
References | (MISC) https://www.dell.com/support/kbdoc/en-us/000206134/dsa-2022-329-dell-wyse-management-suite-security-update-for-multiple-vulnerabilities - Vendor Advisory |
11 Feb 2023, 01:23
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-02-11 01:23
Updated : 2023-12-10 14:48
NVD link : CVE-2022-46754
Mitre link : CVE-2022-46754
CVE.ORG link : CVE-2022-46754
JSON object : View
Products Affected
dell
- wyse_management_suite
CWE