Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2025-02-13 CVE-2025-22480 Link Following vulnerability in Dell Supportassist 3.2.0.90
Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability.
local
low complexity
dell CWE-59
7.8
2025-02-12 CVE-2024-29171 Unspecified vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability.
network
low complexity
dell
7.5
2025-02-12 CVE-2024-29172 Improper Locking vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability.
network
low complexity
dell CWE-667
7.5
2025-02-07 CVE-2025-22402 Unspecified vulnerability in Dell Update Manager Plugin
Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability.
network
low complexity
dell
5.4
2025-02-04 CVE-2025-22475 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability.
network
low complexity
dell CWE-327
7.5
2025-02-01 CVE-2024-53295 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability.
local
low complexity
dell
7.8
2025-02-01 CVE-2024-51534 Path Traversal vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability.
local
low complexity
dell CWE-22
7.1
2025-02-01 CVE-2024-53296 Out-of-bounds Write vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in the RestAPI.
network
low complexity
dell CWE-787
4.9
2025-01-30 CVE-2025-21107 Unquoted Search Path or Element vulnerability in Dell Networker
Dell NetWorker, version(s) prior to 19.11.0.3, all versions of 19.10 & prior versions contain(s) an Unquoted Search Path or Element vulnerability.
local
low complexity
dell CWE-428
7.8
2025-01-30 CVE-2025-23374 Information Exposure Through Log Files vulnerability in Dell Enterprise Sonic Distribution
Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability.
network
low complexity
dell CWE-532
4.9