Back

CRITICAL

Dell PowerProtect Cyber Recovery versions before 19.11.0.2 contain an authentication bypass vulnerability

Published Sep 1, 2022

Description

Dell PowerProtect Cyber Recovery versions before 19.11.0.2 contain an authentication bypass vulnerability. A remote unauthenticated attacker may potentially access and interact with the docker registry API leading to an authentication bypass. The attacker may potentially alter the docker images leading to a loss of integrity and confidentiality

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner dell
Published Sep 1, 2022
Updated Sep 17, 2024
Reserved Jun 23, 2022
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner dell
Published Sep 1, 2022
Updated Sep 17, 2024
Exploited since n/a
EUVD-2022-37327