CVE-2022-34379

CRITICAL

Dell EMC CloudLink < 7.1.3 - Authentication Bypass via Active Directory Username

Title source: llm
STIX 2.1

Description

Dell EMC CloudLink 7.1.2 and all prior versions contain an Authentication Bypass Vulnerability. A remote attacker, with the knowledge of the active directory usernames, could potentially exploit this vulnerability to gain unauthorized access to the system.

Scores

CVSS v3 9.4
EPSS 0.0141
EPSS Percentile 80.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H

Details

CWE
CWE-287
Status published
Products (1)
dell/cloudlink < 7.1.3
Published Sep 01, 2022
Tracked Since Feb 18, 2026