CVE-2022-34374

HIGH

Dell Container Storage Modules < 1.3.0 - Authenticated OS Command Injection in goiscsi and gobrick Libraries

Title source: llm
STIX 2.1

Description

Dell Container Storage Modules 1.2 contains an OS command injection in goiscsi and gobrick libraries. A remote authenticated malicious user with low privileges could exploit this vulnerability leading to to execute arbitrary OS commands on the affected system.

Scores

CVSS v3 8.8
EPSS 0.0490
EPSS Percentile 89.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
dell/container_storage_modules < 1.3.0
Published Aug 30, 2022
Tracked Since Feb 18, 2026