CVE-2024-22229
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by an authenticated attacker. An attacker could exploit this vulnerability to forge log entries, create false alarms, and inject malicious content into logs that compromise logs integrity. A malicious attacker could also prevent the product from logging information while malicious actions are performed or implicate an arbitrary user for malicious activities.
Dell Unity, versiones anteriores a la 5.4, contienen una vulnerabilidad por la cual un atacante autenticado puede falsificar los mensajes de registro. Un atacante podría aprovechar esta vulnerabilidad para falsificar entradas de registro, crear falsas alarmas e inyectar contenido malicioso en registros que comprometan su integridad. Un atacante malicioso también podría impedir que el producto registre información mientras se realizan acciones maliciosas o implicar a un usuario arbitrario por actividades maliciosas.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2024-01-08 CVE Reserved
- 2024-01-24 CVE Published
- 2024-01-31 EPSS Updated
- 2024-08-23 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-116: Improper Encoding or Escaping of Output
- CWE-117: Improper Output Neutralization for Logs
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dell Search vendor "Dell" | Unity Operating Environment Search vendor "Dell" for product "Unity Operating Environment" | 5.3.0.0.5.120 Search vendor "Dell" for product "Unity Operating Environment" and version "5.3.0.0.5.120" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Unity Xt Operating Environment Search vendor "Dell" for product "Unity Xt Operating Environment" | 5.3.0.0.5.120 Search vendor "Dell" for product "Unity Xt Operating Environment" and version "5.3.0.0.5.120" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Unityvsa Operating Environment Search vendor "Dell" for product "Unityvsa Operating Environment" | 5.3.0.0.5.120 Search vendor "Dell" for product "Unityvsa Operating Environment" and version "5.3.0.0.5.120" | - |
Affected
|