CVE-2022-46755: Medium severity dell wyse management suite vulnerability
Wyse Management Suite 3.8 and below contain an improper access control vulnerability. A authenticated malicious admin user can edit general client policy for which the user is not authorized.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-46755 vulnerability?
CVE-2022-46755 is an improper access control vulnerability in Wyse Management Suite 3.8 and below, which allows an authenticated malicious admin user to edit general client policy without proper authorization.
Which software versions are affected by CVE-2022-46755?
Wyse Management Suite versions up to and including 3.8.0 are affected by CVE-2022-46755.
What is the severity of CVE-2022-46755?
CVE-2022-46755 has a severity rating of 4.9 (medium).
How can an attacker exploit CVE-2022-46755?
An attacker with administrative access can exploit CVE-2022-46755 by authenticating as an admin user and modifying general client policies without proper authorization.
Is there a security update available for CVE-2022-46755?
Yes, Dell has released a security update for CVE-2022-46755. Please refer to the Dell support website for more information.