CVE-2022-34374

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
30/08/2022
Last modified:
02/09/2022

Description

Dell Container Storage Modules 1.2 contains an OS command injection in goiscsi and gobrick libraries. A remote authenticated malicious user with low privileges could exploit this vulnerability leading to to execute arbitrary OS commands on the affected system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:container_storage_modules:*:*:*:*:*:*:*:* 1.3.0 (excluding)