CVE Published: 24/06/2022 |
CVE Updated: 16/09/2024 |
CVE Year: 2022 Source: dell |
Vendor: Dell |
Product: Wyse Management Suite Status : PUBLISHED
CVE-2022-29097 Description
Dell WMS 3.6.1 and below contains a Path Traversal vulnerability in Device API. A remote attacker could potentially exploit this vulnerability, to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.
Metrics
CVSS Version: 3.1 |
Base Score: 4.9 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N