CVE-2022-46677: Medium severity dell wyse management suite vulnerability
Published Feb 10, 2023
·Updated
Wyse Management Suite 3.8 and below contain an improper access control vulnerability with which an custom group admin can create a subgroup under a group for which the admin is not authorized.
Affected Software
1 affected component
Dell Wyse Management Suite<=3.8.0
Event History
Feb 10, 2023
CVE Published
via MITRE·09:17 PM
Data Sourced
via MITRE·09:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-46677?
CVE-2022-46677 is an improper access control vulnerability in Wyse Management Suite 3.8 and below.
2
How does CVE-2022-46677 affect Wyse Management Suite?
CVE-2022-46677 allows a custom group admin to create a subgroup under a group for which the admin is not authorized.
3
What is the severity of CVE-2022-46677?
CVE-2022-46677 has a severity level of medium with a CVSS score of 4.9.
4
How can I fix CVE-2022-46677?
To fix CVE-2022-46677, Dell Wyse Management Suite users should apply the security update mentioned in the reference link.