CVE-2022-34397: Medium severity dell emc vasa provider virtual appliance vulnerability
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below contains an authorization bypass vulnerability, allowing users to perform actions in which they are not authorized.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-34397?
CVE-2022-34397 is a vulnerability in Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below that allows unauthorized actions to be performed.
How severe is CVE-2022-34397?
CVE-2022-34397 has a severity score of 5.7, which is classified as medium.
Which software versions are affected by CVE-2022-34397?
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below are affected by CVE-2022-34397.
How can I fix CVE-2022-34397?
To fix CVE-2022-34397, it is recommended to update Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp to a version above 10.0.0.5.
Where can I find more information about CVE-2022-34397?
More information about CVE-2022-34397 can be found in the Dell security advisory at https://www.dell.com/support/kbdoc/en-us/000207177/dsa-2022-340-dell-unisphere-for-powermax-dell-unisphere-for-powermax-vapp-dell-solutions-enabler-vapp-dell-unisphere-360-dell-vasa-provider-vapp-and-dell-powermax-emb-mgmt-security-update-for-multiple-vulnerabilities.