CVE-2022-34363

MEDIUM

Dell Unisphere For PowerMax - Improper Authorization

Title source: rule
STIX 2.1

Description

Dell Unisphere for PowerMax vApp version prior to 10.0.0.2, contains an authorization bypass vulnerability in the  Unisphere for VMAX application running in vApp

References (1)

Core 1

Scores

CVSS v3 6.5
EPSS 0.0003
EPSS Percentile 7.8%
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-285
Status published
Products (4)
Dell/Unisphere 360 < 9.2.3.12
Dell/Unisphere for PowerMax < 10.0.0.5 EEM: 10.0.0.968
Dell/Unisphere for PowerMax < 9.2.3.22 EEM: 9.2.4.26
Dell/Unisphere for PowerMax Virtual Appliance < 9.2.3.22 EEM: 9.2.4.26
Published May 22, 2026
Tracked Since May 22, 2026