Vulnerability Details CVE-2022-22552
Dell EMC AppSync versions 3.9 to 4.3 contain a clickjacking vulnerability in AppSync. A remote unauthenticated attacker could potentially exploit this vulnerability to trick the victim into executing state changing operations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.7%
CVSS Severity
CVSS v3 Score 6.9
CVSS v2 Score 5.8
Products affected by CVE-2022-22552
-
cpe:2.3:a:dell:emc_appsync:3.9.0.0
-
cpe:2.3:a:dell:emc_appsync:4.2.0.0
-
cpe:2.3:a:dell:emc_appsync:4.3.0.0