Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-34389

Опубликовано: 11 фев. 2023
Источник: nvd
CVSS3: 3.7
CVSS3: 5.3
EPSS Низкий

Описание

Dell SupportAssist contains a rate limit bypass issues in screenmeet API third party component. An unauthenticated attacker could potentially exploit this vulnerability and impersonate a legitimate dell customer to a dell support technician.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:dell:supportassist_for_business_pcs:*:*:*:*:*:*:*:*
Версия до 3.3.0 (исключая)
cpe:2.3:a:dell:supportassist_for_home_pcs:*:*:*:*:*:*:*:*
Версия до 3.12.3 (исключая)

EPSS

Процентиль: 14%
0.00045
Низкий

3.7 Low

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-307
CWE-307

Связанные уязвимости

CVSS3: 5.3
github
почти 3 года назад

Dell SupportAssist contains a rate limit bypass issues in screenmeet API third party component. An unauthenticated attacker could potentially exploit this vulnerability and impersonate a legitimate dell customer to a dell support technician.

EPSS

Процентиль: 14%
0.00045
Низкий

3.7 Low

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-307
CWE-307