Vulnerability Details CVE-2022-29089
Dell Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an information disclosure vulnerability. A remote, unauthenticated attacker could potentially exploit this vulnerability by reverse engineering to retrieve sensitive information and access the REST API with admin privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.9%
CVSS Severity
CVSS v3 Score 6.4
Products affected by CVE-2022-29089
-
cpe:2.3:o:dell:smartfabric_os10:10.5.1.0
-
cpe:2.3:o:dell:smartfabric_os10:10.5.2.0
-
cpe:2.3:o:dell:smartfabric_os10:10.5.3.0
-
cpe:2.3:o:dell:smartfabric_os10:10.5.3.1
-
cpe:2.3:o:dell:smartfabric_os10:10.5.3.2
-
cpe:2.3:o:dell:smartfabric_os10:10.5.3.3
-
cpe:2.3:o:dell:smartfabric_os10:10.5.3.4