CVE-2022-26868
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Dell EMC PowerStore versions 2.0.0.x, 2.0.1.x, and 2.1.0.x are vulnerable to a command injection flaw. An authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. Exploitation may lead to a system takeover by an attacker.
Dell EMC PowerStore versiones 2.0.0.x, 2.0.1.x y 2.1.0.x de Dell EMC PowerStore son vulnerables a un fallo de inyección de comandos. Un atacante autenticado podría explotar esta vulnerabilidad, conllevando a una ejecución de comandos arbitrarios en el Sistema Operativo subyacente de la aplicación, con los privilegios de la aplicación vulnerable. La explotación puede conllevar a una toma de control del sistema por parte de un atacante
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-03-10 CVE Reserved
- 2022-06-02 CVE Published
- 2023-12-24 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.dell.com/support/kbdoc/000196367 | 2022-06-13 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dell Search vendor "Dell" | Powerstoreos Search vendor "Dell" for product "Powerstoreos" | >= 2.0.0.0 < 2.1.1.0 Search vendor "Dell" for product "Powerstoreos" and version " >= 2.0.0.0 < 2.1.1.0" | - |
Affected
| in | Dell Search vendor "Dell" | Powerstore T Search vendor "Dell" for product "Powerstore T" | - | - |
Safe
|
Dell Search vendor "Dell" | Powerstoreos Search vendor "Dell" for product "Powerstoreos" | >= 2.0.0.0 < 2.1.1.0 Search vendor "Dell" for product "Powerstoreos" and version " >= 2.0.0.0 < 2.1.1.0" | - |
Affected
| in | Dell Search vendor "Dell" | Powerstore X Search vendor "Dell" for product "Powerstore X" | - | - |
Safe
|