First published: Wed Jan 18 2023(Updated: )
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain LDAP user privileges.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Policy Manager for Secure Connect Gateway | >=5.10.00.00<5.14.00.00 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-34442 is classified as a high-severity vulnerability due to the potential for unauthorized access and privilege escalation.
To mitigate CVE-2022-34442, upgrade your Dell EMC Secure Connect Gateway Policy Manager to version 5.14 or later.
CVE-2022-34442 affects users of Dell EMC Secure Connect Gateway Policy Manager versions 5.10 to 5.12.
An attacker who exploits CVE-2022-34442 can gain LDAP user privileges, potentially compromising the system.
Yes, CVE-2022-34442 is specific to Dell EMC Secure Connect Gateway Policy Manager and does not apply to other systems.