CVE-2022-46678: Medium severity dell wyse management suite vulnerability
Published Feb 10, 2023
·Updated
Wyse Management Suite
3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user can edit general client policy for which the user is not authorized.
Affected Software
1 affected component
Dell Wyse Management Suite<=3.8.0
Event History
Feb 10, 2023
CVE Published
via MITRE·09:15 PM
Data Sourced
via MITRE·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-46678.
2
What is the severity of CVE-2022-46678?
The severity of CVE-2022-46678 is medium with a severity value of 4.9.
3
What is the affected software for CVE-2022-46678?
The affected software for CVE-2022-46678 is Dell Wyse Management Suite 3.8 and below.
4
What is the impact of CVE-2022-46678?
CVE-2022-46678 allows an authenticated malicious admin user to edit general client policy for which the user is not authorized.
5
How can I fix CVE-2022-46678?
To fix CVE-2022-46678, update to a version of Dell Wyse Management Suite that is above 3.8.0.