CVE-2022-33925

MEDIUM

Dell Wyse Management Suite <3.6.1 - Auth Bypass

Title source: llm
STIX 2.1

Description

Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI. An remote authenticated attacker could potentially exploit this vulnerability by bypassing access controls in order to download reports containing sensitive information.

Scores

CVSS v3 6.5
EPSS 0.0016
EPSS Percentile 36.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-284
Status published
Products (1)
dell/wyse_management_suite < 3.8.0
Published Aug 10, 2022
Tracked Since Feb 18, 2026