Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-10-13 CVE-2023-43079 Improper Access Control vulnerability in Dell EMC Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.0.0 and prior, contains an Improper Access Control vulnerability.
local
low complexity
dell CWE-284
7.8
2023-10-05 CVE-2023-32485 Improper Input Validation vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability.
network
low complexity
dell CWE-20
critical
9.8
2023-10-05 CVE-2023-43068 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the restricted shell in SSH.
network
low complexity
dell CWE-78
8.8
2023-10-05 CVE-2023-43069 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contain(s) an OS Command Injection Vulnerability in the CLI.
local
low complexity
dell CWE-78
7.8
2023-10-05 CVE-2023-43070 Path Traversal vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains a Path Traversal Vulnerability in the HTTP interface.
network
low complexity
dell CWE-22
6.5
2023-10-05 CVE-2023-43071 Improper Neutralization of Formula Elements in a CSV File vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI.
network
low complexity
dell CWE-1236
5.4
2023-10-05 CVE-2023-43072 Improper Access Control vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an improper access control vulnerability in the CLI.
local
low complexity
dell CWE-284
7.8
2023-10-05 CVE-2023-43073 Improper Input Validation vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an Improper Input Validation vulnerability in RADIUS configuration.
network
low complexity
dell CWE-20
6.5
2023-10-05 CVE-2023-4401 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ‘more’ command.
network
low complexity
dell CWE-78
8.8
2023-09-29 CVE-2023-32477 Improper Access Control vulnerability in Dell Common Event Enabler
Dell Common Event Enabler 8.9.8.2 for Windows and prior, contain an improper access control vulnerability.
local
low complexity
dell CWE-284
7.8