CVE-2022-22554
HIGHDell EMC System Update <1.9.2 - Info Disclosure
Title source: llmDescription
Dell EMC System Update, version 1.9.2 and prior, contain an Unprotected Storage of Credentials vulnerability. A local attacker with user privleges could potentially exploit this vulnerability leading to the disclosure of user passwords.
Scores
CVSS v3
8.2
EPSS
0.0004
EPSS Percentile
12.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Classification
CWE
CWE-522
CWE-256
Status
published
Affected Products (1)
dell/emc_system_update
< 1.9.2.0
Timeline
Published
Jan 24, 2022
Tracked Since
Feb 18, 2026