Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2025-03-21 CVE-2025-26336 Stack-based Buffer Overflow vulnerability in Dell products
Dell Chassis Management Controller Firmware for Dell PowerEdge FX2, version(s) prior to 2.40.200.202101130302, and Dell Chassis Management Controller Firmware for Dell PowerEdge VRTX version(s) prior to 3.41.200.202209300499, contain(s) a Stack-based Buffer Overflow vulnerability.
network
low complexity
dell CWE-121
critical
9.8
2025-02-13 CVE-2025-22480 Link Following vulnerability in Dell Supportassist 3.2.0.90
Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability.
local
low complexity
dell CWE-59
7.8
2025-02-12 CVE-2024-29171 Unspecified vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability.
network
low complexity
dell
7.5
2025-02-12 CVE-2024-29172 Improper Locking vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability.
network
low complexity
dell CWE-667
7.5
2025-02-07 CVE-2025-22402 Unspecified vulnerability in Dell Update Manager Plugin
Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability.
network
low complexity
dell
5.4
2025-02-05 CVE-2025-21117 Operation on a Resource after Expiration or Release vulnerability in Dell Avamar Server
Dell Avamar, version 19.4 or later, contains an access token reuse vulnerability in the AUI.
local
low complexity
dell CWE-672
5.5
2025-02-04 CVE-2025-22475 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability.
network
low complexity
dell CWE-327
7.5
2025-02-01 CVE-2024-53295 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability.
local
low complexity
dell
7.8
2025-02-01 CVE-2024-51534 Path Traversal vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability.
local
low complexity
dell CWE-22
7.1
2025-02-01 CVE-2024-53296 Out-of-bounds Write vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in the RestAPI.
network
low complexity
dell CWE-787
4.9