CVE-2022-34441: Critical severity dell policy manager for secure connect gateway vulnerability
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain admin privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34441?
CVE-2022-34441 is classified as a high severity vulnerability due to the potential for unauthorized admin access.
How do I fix CVE-2022-34441?
To mitigate CVE-2022-34441, upgrade the Dell EMC SCG Policy Manager to version 5.14 or later.
What causes CVE-2022-34441?
CVE-2022-34441 is caused by a hard-coded cryptographic key within the affected software versions.
Which versions of Dell EMC SCG Policy Manager are affected by CVE-2022-34441?
CVE-2022-34441 affects versions 5.10 to 5.12 of the Dell EMC SCG Policy Manager.
Who is vulnerable to exploitation of CVE-2022-34441?
Any user or entity using the affected versions of Dell EMC SCG Policy Manager is at risk of exploitation if they do not upgrade.