Dell EMC Alert
2716Warning Date
Severity Level
Warning Number
Target Sector
24 February, 2022
● Critical
2022-4434
All
Dell EMC has released security updates to address several vulnerabilities in the following products:
- Dell EMC VxRail Appliance
- 4.5.x versions before 4.5.471
- Dell EMC VPLEX
- Versions before:
- BIOS 2.3.5
- iDRAC 4.20.20.2
- NIC 21.60.8
- Versions before:
An attacker could exploit these vulnerabilities by doing the following:
- Privilege escalation
- Remote code execution
The CERT team encourages users to review Dell EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/kbdoc/en-us/000196624/dsa-2022-045-dell-emc-vxrail-security-update-for-multiple-third-party-component-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000196667/dsa-2022-059-vs2-sms-server-dell-emc-vs2-server-pe-security-update-for-multiple-security-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000196668/dsa-2022-060-dell-emc-vs2-server-pe-security-update-for-multiple-security-vulnerabilities