CVE-2022-34442: Critical severity dell policy manager for secure connect gateway vulnerability
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain LDAP user privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-34442?
CVE-2022-34442 is classified as a high-severity vulnerability due to the potential for unauthorized access and privilege escalation.
How do I fix CVE-2022-34442?
To mitigate CVE-2022-34442, upgrade your Dell EMC Secure Connect Gateway Policy Manager to version 5.14 or later.
Who is affected by CVE-2022-34442?
CVE-2022-34442 affects users of Dell EMC Secure Connect Gateway Policy Manager versions 5.10 to 5.12.
What can an attacker do with CVE-2022-34442?
An attacker who exploits CVE-2022-34442 can gain LDAP user privileges, potentially compromising the system.
Is CVE-2022-34442 unique to Dell EMC products?
Yes, CVE-2022-34442 is specific to Dell EMC Secure Connect Gateway Policy Manager and does not apply to other systems.