CVE-2022-34429

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
30/09/2022
Last modified:
05/10/2022

Description

Dell Hybrid Client below 1.8 version contains a Zip Slip Vulnerability in UI. A guest privilege attacker could potentially exploit this vulnerability, leading to system files modification.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dell:hybrid_client:1.5:*:*:*:*:*:*:*
cpe:2.3:a:dell:hybrid_client:1.6:*:*:*:*:*:*:*
cpe:2.3:a:dell:hybrid_client:1.6.1:*:*:*:*:*:*:*
cpe:2.3:a:dell:hybrid_client:1.6.2:*:*:*:*:*:*:*