First published: Fri Feb 10 2023(Updated: )
Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user can edit general client policy for which the user is not authorized.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Wyse Management Suite | <=3.8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-46678.
The severity of CVE-2022-46678 is medium with a severity value of 4.9.
The affected software for CVE-2022-46678 is Dell Wyse Management Suite 3.8 and below.
CVE-2022-46678 allows an authenticated malicious admin user to edit general client policy for which the user is not authorized.
To fix CVE-2022-46678, update to a version of Dell Wyse Management Suite that is above 3.8.0.