Vulnerabilities > Dell
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-04-24 | CVE-2017-2802 | Untrusted Search Path vulnerability in Dell Precision Optimizer 3.5.5.0 An exploitable dll hijacking vulnerability exists in the poaService.exe service component of the Dell Precision Optimizer software version 3.5.5.0. | 7.8 |
2018-04-09 | CVE-2018-1217 | Missing Authorization vulnerability in Dell products Avamar Installation Manager in Dell EMC Avamar Server 7.3.1, 7.4.1, and 7.5.0, and Dell EMC Integrated Data Protection Appliance 2.0 and 2.1, is affected by a missing access control check vulnerability which could potentially allow a remote unauthenticated attacker to read or change the Local Download Service (LDLS) credentials. | 9.8 |
2018-03-27 | CVE-2018-1238 | OS Command Injection vulnerability in Dell EMC Scaleio Dell EMC ScaleIO versions prior to 2.5, contain a command injection vulnerability in the Light Installation Agent (LIA). | 7.5 |
2018-03-27 | CVE-2018-1237 | Improper Authentication vulnerability in Dell EMC Scaleio Dell EMC ScaleIO versions prior to 2.5, contain improper restriction of excessive authentication attempts on the Light installation Agent (LIA). | 9.8 |
2018-03-27 | CVE-2018-1205 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dell EMC Scaleio Dell EMC ScaleIO, versions prior to 2.5, do not properly handle some packet data in the MDM service. | 7.5 |
2018-03-26 | CVE-2018-1213 | Cross-Site Request Forgery (CSRF) vulnerability in Dell EMC Isilon Onefs Dell EMC Isilon OneFS versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, versions 7.2.1.x, and version 7.1.1.11 and 8.1.0.2 is affected by a cross-site request forgery vulnerability. | 8.8 |
2018-03-26 | CVE-2018-1204 | Path Traversal vulnerability in Dell EMC Isilon Onefs Dell EMC Isilon OneFS versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, versions 7.2.1.x, and version 7.1.1.11 is affected by a path traversal vulnerability in the isi_phone_home tool. | 6.7 |
2018-03-26 | CVE-2018-1203 | Incorrect Permission Assignment for Critical Resource vulnerability in Dell EMC Isilon Onefs In Dell EMC Isilon OneFS, the compadmin is able to run tcpdump binary with root privileges. | 6.7 |
2018-03-26 | CVE-2018-1202 | Cross-site Scripting vulnerability in Dell EMC Isilon Dell EMC Isilon versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, and version 7.1.1.11 is affected by a cross-site scripting vulnerability in the NDMP Page within the OneFS web administration interface. | 4.8 |
2018-03-26 | CVE-2018-1201 | Cross-site Scripting vulnerability in Dell EMC Isilon Dell EMC Isilon versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, versions 7.2.1.x, and version 7.1.1.11 is affected by a cross-site scripting vulnerability in the Job Operations Page within the OneFS web administration interface. | 4.8 |