PoC Index

CVE-2022-22555

MEDIUM 6.7EPSS 0.8%

Dell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the PowerStore underlying OS, with the privileges of the vulnerable application. Exploitation may lead to an elevation of privilege.

CVSS v3.1
6.7 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
6.0 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
EPSS
0.83% chance of exploitation in the next 30 days, 55th percentile
Published
2022-07-20
Updated
2024-09-16

Proof-of-concept exploits (1)

References

Related