Vulnerability Details CVE-2024-38482
CloudLink, versions 7.1.x and 8.x, contain an Improper check or handling of Exceptional Conditions Vulnerability in Cluster Component. A highly privileged malicious user with remote access could potentially exploit this vulnerability, leading to execute unauthorized actions and retrieve sensitive information from the database.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.1%
CVSS Severity
CVSS v3 Score 6.6
Products affected by CVE-2024-38482
-
cpe:2.3:a:dell:cloudlink:7.1
-
cpe:2.3:a:dell:cloudlink:7.1.1
-
cpe:2.3:a:dell:cloudlink:7.1.2
-
cpe:2.3:a:dell:cloudlink:7.1.3
-
cpe:2.3:a:dell:cloudlink:7.1.4
-
cpe:2.3:a:dell:cloudlink:7.1.5
-
cpe:2.3:a:dell:cloudlink:7.1.6
-
cpe:2.3:a:dell:cloudlink:7.1.7
-
cpe:2.3:a:dell:cloudlink:7.1.8
-
cpe:2.3:a:dell:cloudlink:7.1.9