Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-02-12 CVE-2024-22228 OS Command Injection vulnerability in Dell Unity Operating Environment 5.0.7.0.5.008/5.2.0.0.5.173/5.3.0.0.5.120
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cifssupport utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-22230 Cross-site Scripting vulnerability in Dell Unity Operating Environment 5.0.7.0.5.008/5.2.0.0.5.173/5.3.0.0.5.120
Dell Unity, versions prior to 5.4, contains a Cross-site scripting vulnerability.
network
low complexity
dell CWE-79
5.4
2024-02-10 CVE-2023-28077 Information Exposure vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.5, and versions 7.0 and 7.1 contain a debug message revealing unnecessary information vulnerability.
local
low complexity
dell CWE-200
4.4
2024-02-08 CVE-2024-22464 Information Exposure Through Log Files vulnerability in Dell EMC Appsync
Dell EMC AppSync, versions from 4.2.0.0 to 4.6.0.0 including all Service Pack releases, contain an exposure of sensitive information vulnerability in AppSync server logs.
network
low complexity
dell CWE-532
6.8
2024-02-06 CVE-2023-28063 Incorrect Conversion between Numeric Types vulnerability in Dell products
Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability.
local
low complexity
dell CWE-681
4.4
2024-02-06 CVE-2023-32451 Improper Privilege Management vulnerability in Dell Display Manager 2.0.0/2.1.0/2.1.1
Dell Display Manager application, version 2.1.1.17, contains a vulnerability that low privilege user can execute malicious code during installation and uninstallation
local
low complexity
dell CWE-269
7.8
2024-02-06 CVE-2023-32454 Link Following vulnerability in Dell Update Package Framework 3.8.3.67
DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability.
local
low complexity
dell CWE-59
7.1
2024-02-06 CVE-2023-32474 Link Following vulnerability in Dell Display Manager 2.0.0/2.1.0/2.1.1
Dell Display Manager application, version 2.1.1.17 and prior, contain an insecure operation on windows junction/mount point.
local
low complexity
dell CWE-59
6.6
2024-02-06 CVE-2023-32479 Unspecified vulnerability in Dell products
Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 contain privilege escalation vulnerability due to improper ACL of the non-default installation directory.
local
low complexity
dell
7.8
2024-02-06 CVE-2023-25543 Improper Handling of Exceptional Conditions vulnerability in Dell Power Manager 3.10/3.11/3.3
Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in DPM service.
local
low complexity
dell CWE-755
7.8