Security Advisory

CVE-2024-29168

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-06-13 15:09:31
Last updated 2024-08-02 01:10:54
Assigner dell
CVSS score 5.4
State PUBLISHED

Description

Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of application data.