Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-12-08 CVE-2023-32460 Missing Authentication for Critical Function vulnerability in Dell products
Dell PowerEdge BIOS contains an improper privilege management security vulnerability.
local
low complexity
dell CWE-306
7.8
2023-12-05 CVE-2023-44297 Improper Locking vulnerability in Dell products
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability.
low complexity
dell CWE-667
6.8
2023-12-05 CVE-2023-44298 Improper Locking vulnerability in Dell products
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability.
low complexity
dell CWE-667
6.8
2023-12-05 CVE-2023-39248 Unspecified vulnerability in Dell Networking Os10 10.5.5.5
Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Service) vulnerability, when switches are configured with VLT and VRRP.
network
low complexity
dell
7.5
2023-12-05 CVE-2023-44288 Unspecified vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS, 8.2.2.x through 9.6.0.x, contains an improper control of a resource through its lifetime vulnerability.
network
low complexity
dell
7.5
2023-12-05 CVE-2023-44295 Unspecified vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.2.x through 9.6.0.x contains an improper control of a resource through its lifetime vulnerability.
network
low complexity
dell
8.1
2023-12-04 CVE-2023-44291 OS Command Injection vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance.
network
low complexity
dell CWE-78
7.2
2023-12-04 CVE-2023-44300 Insufficiently Protected Credentials vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in the appliance.
local
low complexity
dell CWE-522
5.5
2023-12-04 CVE-2023-44301 Cross-site Scripting vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0 and prior contain a Reflected Cross-Site Scripting Vulnerability.
network
low complexity
dell CWE-79
5.4
2023-12-04 CVE-2023-44302 Improper Authentication vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0 and prior contain an improper authentication vulnerability.
network
low complexity
dell CWE-287
critical
9.8