Vulnerabilities > Dell > Elastic Cloud Storage

DATE CVE VULNERABILITY TITLE RISK
2024-12-26 CVE-2024-51540 Integer Overflow or Wraparound vulnerability in Dell Elastic Cloud Storage
Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS.
network
low complexity
dell CWE-190
6.5
2024-12-25 CVE-2024-52534 Authentication Bypass by Capture-replay vulnerability in Dell Elastic Cloud Storage
Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability.
network
low complexity
dell CWE-294
5.4
2024-12-09 CVE-2024-38485 Open Redirect vulnerability in Dell Elastic Cloud Storage
Dell ECS, versions prior to 3.8.0, contain(s) a Host Header Injection Vulnerability.
network
low complexity
dell CWE-601
4.3
2024-07-18 CVE-2024-30473 Unspecified vulnerability in Dell Elastic Cloud Storage
Dell ECS, versions prior to 3.8.1, contain a privilege elevation vulnerability in user management.
network
low complexity
dell
6.5
2024-02-28 CVE-2024-22459 Unspecified vulnerability in Dell Elastic Cloud Storage
Dell ECS, versions 3.6 through 3.6.2.5, and 3.7 through 3.7.0.6, and 3.8 through 3.8.0.4 versions, contain an improper access control vulnerability.
network
low complexity
dell
6.5
2023-05-04 CVE-2023-25934 Improper Verification of Cryptographic Signature vulnerability in Dell Elastic Cloud Storage
DELL ECS prior to 3.8.0.2 contains an improper verification of cryptographic signature vulnerability.
network
low complexity
dell CWE-347
7.5
2017-10-03 CVE-2017-8021 Insecure Default Initialization of Resource vulnerability in Dell Elastic Cloud Storage 3.0
EMC Elastic Cloud Storage (ECS) before 3.1 is affected by an undocumented account vulnerability that could potentially be leveraged by malicious users to compromise the affected system.
network
low complexity
dell CWE-1188
critical
9.8