First published: Wed Feb 01 2023(Updated: )
Dell OpenManage Server Administrator (OMSA) version 10.3.0.0 and earlier contains a DLL Injection Vulnerability. A local low privileged authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary executable on the operating system with elevated privileges. Exploitation may lead to a complete system compromise.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell OpenManage Server Administrator | <=10.3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-34396 is classified as a high severity vulnerability due to the potential for arbitrary code execution.
To fix CVE-2022-34396, you should upgrade to Dell OpenManage Server Administrator version 10.3.1.0 or later.
CVE-2022-34396 cannot be exploited remotely as it requires local access and low-privileged authentication.
The impacts of CVE-2022-34396 include the potential for a local attacker to execute arbitrary code with elevated privileges on the affected system.
CVE-2022-34396 affects Dell OpenManage Server Administrator versions 10.3.0.0 and earlier.