Security Advisory

CVE-2022-29096

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-24 17:00:19
Last updated 2024-09-16 19:09:27
Assigner dell
State PUBLISHED

Description

Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in saveGroupConfigurations page. An authenticated attacker could potentially exploit this vulnerability, leading to the execution of malicious HTML or JavaScript code in a victim users web browser in the context of the vulnerable web application. Exploitation may lead to information disclosure, session theft, or client-side request forgery.