← Vulnerability feed

Vulnerability record · CVE-2022-45103 · published 18 January 2023

CVE-2022-45103: Dell emc solutions enabler virtual appliance information exposure vulnerability

Dell · Emc Solutions Enabler Virtual Appliance

Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to read arbitrary files on the underlying file system.

6.5 CVSS 3.1 Medium EPSS 0.74% · top 47.1% CWE-200 · Information exposure
6.5CVSS 3.1 base score
0.74%EPSS exploitation probability, 30 days
NoNot in CISA KEV
8Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to read arbitrary files on the underlying file system.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected products

8 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2022-45103 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2018-1183Dell emc smis xml external entity (xxe) vulnerabilityIn Dell EMC Unisphere for VMAX Virtual Appliance versions prior to 8.4.0.8, Dell EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.8, D…EPSS 2.0%9.8CVE-2018-1216Dell emc solutions enabler virtual appliance hard-coded credentials vulnerabilityA hard-coded password vulnerability was discovered in vApp Manager which is embedded in Dell EMC Unisphere for VMAX, Dell EMC Solutions Enabler, Dell…EPSS 21%9.8CVE-2017-4997Dell emc vasa provider virtual appliance improper input validation vulnerabilityEMC VASA Provider Virtual Appliance versions 8.3.x and prior has an unauthenticated remote code execution vulnerability that could potentially be exp…EPSS 4.5%8.8CVE-2018-1215Dell emc solutions enabler virtual appliance unrestricted file upload vulnerabilityAn arbitrary file upload vulnerability was discovered in vApp Manager which is embedded in Dell EMC Unisphere for VMAX, Dell EMC Solutions Enabler, D…EPSS 4.2%8.1CVE-2020-5367Dell emc unisphere for powermax improper certificate validation vulnerabilityDell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMa…EPSS 0.59%8.0CVE-2022-31233Dell evasa provider virtual appliance vulnerabilityUnisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this…EPSS 0.33%8.0CVE-2021-36338Dell solutions enabler reliance on cookies without validation vulnerabilityUnisphere for PowerMax versions prior to 9.2.2.2 contains a privilege escalation vulnerability. An adjacent malicious user could potentially exploit …EPSS 0.36%7.8CVE-2021-36339Dell solutions enabler execution with unnecessary privileges vulnerabilityThe Dell EMC Virtual Appliances before 9.2.2.2 contain undocumented user accounts. A local malicious user may potentially exploit this vulnerability …EPSS 0.24%

Source: NIST National Vulnerability Database (record CVE-2022-45103), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.