Vulnerability Details CVE-2022-34448
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Cross-site Request Forgery vulnerability. An unauthenticated non-privileged user could potentially exploit the issue and perform any privileged state-changing actions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.6%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2022-34448
-
cpe:2.3:a:dell:powerpath_management_appliance:3.0
-
cpe:2.3:a:dell:powerpath_management_appliance:3.1
-
cpe:2.3:a:dell:powerpath_management_appliance:3.2
-
cpe:2.3:a:dell:powerpath_management_appliance:3.3