CVE-2022-33934

CVSS V2 None CVSS V3 None
Description
Dell PowerScale OneFS, versions 8.2.x through 9.4.x contain multiple stored cross-site scripting vulnerabilities. A remote authenticated malicious user with high privileges may potentially exploit these vulnerabilities to store malicious HTML or JavaScript code through multiple affected fields.
Overview
  • CVE ID
  • CVE-2022-33934
  • Assigner
  • security_alert@emc.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-02-10T20:15:52
  • Last Modified Date
  • 2023-02-17T20:06:47
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:* 1 OR 9.1.0.0 9.1.0.23
cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:* 1 OR 9.2.1.0 9.2.1.16
cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:* 1 OR 9.3.0.0 9.3.0.7
cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:* 1 OR 9.4.0.0 9.4.0.4
References
Reference URL Reference Tags
https://www.dell.com/support/kbdoc/en-us/000205618/dsa-2022-271 Vendor Advisory
History
Created Old Value New Value Data Type Notes
2023-04-17 07:30:33 Added to TrackCVE
2023-04-17 07:30:35 Weakness Enumeration new