Artikelnummer: 000201213
Critical
| Proprietary Code CVE | Description | CVSS Base score | CVSS Vector String |
| CVE-2022-32481 | Dell PowerProtect Cyber Recovery, versions before 19.11, contain a privilege escalation vulnerability on virtual appliance deployments. A lower-privileged authenticated user may chain docker commands to escalate privileges to root leading to complete system takeover. | 7.8 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| Third-party Component | CVEs | More information |
| Debian GNU/Linux, Alpine Linux | See Release Notes | See NVD (http://nvd.nist.gov/) for individual scores for each CVE. |
| Proprietary Code CVE | Description | CVSS Base score | CVSS Vector String |
| CVE-2022-32481 | Dell PowerProtect Cyber Recovery, versions before 19.11, contain a privilege escalation vulnerability on virtual appliance deployments. A lower-privileged authenticated user may chain docker commands to escalate privileges to root leading to complete system takeover. | 7.8 | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| Third-party Component | CVEs | More information |
| Debian GNU/Linux, Alpine Linux | See Release Notes | See NVD (http://nvd.nist.gov/) for individual scores for each CVE. |
| Product | Affected Versions | Updated Versions | Link to update |
| Cyber Recovery | Versions before 19.11 | 19.11 | Cyber Recovery Downloads |
| Product | Affected Versions | Updated Versions | Link to update |
| Cyber Recovery | Versions before 19.11 | 19.11 | Cyber Recovery Downloads |
| Revision | Date | Description |
| 1.0 | 2022-07-05 | Initial Release |
Dell Security Advisories and Notices
Dell Vulnerability Response Policy
CVSS Scoring Guide
PowerProtect Cyber Recovery, Cyber Recovery Series, Product Security Information
01 aug 2022
3
Dell Security Advisory