CVE-2022-33923: OS Command Injection
Dell PowerStore, versions prior to 3.0.0.0, contains an OS Command Injection vulnerability in PowerStore T environment. A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS command on the PowerStore underlying OS. Exploiting may lead to a system take over by an attacker.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-33923?
CVE-2022-33923 is classified as a high severity vulnerability due to its potential for OS command injection.
How do I fix CVE-2022-33923?
To mitigate CVE-2022-33923, upgrade the Dell PowerStore to version 3.0.0.0 or later.
What products are affected by CVE-2022-33923?
CVE-2022-33923 affects Dell EMC PowerStore 500T, 1200T, 3200T, 5200T, and 9200T versions prior to 3.0.0.0.
Can a remote attacker exploit CVE-2022-33923?
No, CVE-2022-33923 requires local authentication for exploitation.
What could be the impact of exploiting CVE-2022-33923?
Exploitation of CVE-2022-33923 may lead to the execution of arbitrary OS commands on the underlying operating system.