First published: Thu Aug 03 2023(Updated: )
Dell XtremIO X2 XMS versions prior to 6-4-1.11 contain an improper access control vulnerability. A remote read only user could potentially exploit this vulnerability to perform add/delete QoS policies which are disabled by default.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Xtremio X2 Firmware | <6.4.1-11 | |
Dell EMC XtremIO |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Dell XtremIO X2 XMS vulnerability is CVE-2022-34453.
The severity of CVE-2022-34453 is high with a CVSS score of 7.6.
Dell XtremIO X2 XMS versions prior to 6-4-1.11 are affected by CVE-2022-34453.
A remote read-only user could potentially exploit CVE-2022-34453 to perform add/delete QoS policies which are disabled by default.
You can find more information about CVE-2022-34453 in the Dell XtremIO X2 Security Advisory for XMS GUI on the Dell support website.