Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-10-18 CVE-2024-47240 Incorrect Default Permissions vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.24 contains an Incorrect Default Permissions vulnerability.
network
low complexity
dell CWE-276
6.3
2024-10-09 CVE-2024-39586 XXE vulnerability in Dell EMC Appsync
Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability.
low complexity
dell CWE-611
4.3
2024-09-10 CVE-2024-39574 Unspecified vulnerability in Dell Insightiq 5.1.0
Dell PowerScale InsightIQ, version 5.1, contain an Improper Privilege Management vulnerability.
local
low complexity
dell
4.4
2024-09-10 CVE-2024-39580 Unspecified vulnerability in Dell Insightiq 5.0.1/5.1.0
Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains an Improper Access Control vulnerability.
local
low complexity
dell
6.7
2024-09-10 CVE-2024-39581 Files or Directories Accessible to External Parties vulnerability in Dell Insightiq 5.0.1/5.1.0
Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability.
network
low complexity
dell CWE-552
critical
9.8
2024-09-10 CVE-2024-39582 Use of Hard-coded Credentials vulnerability in Dell Insightiq 5.0
Dell PowerScale InsightIQ, version 5.0, contain a Use of hard coded Credentials vulnerability.
local
low complexity
dell CWE-798
4.4
2024-09-10 CVE-2024-39583 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Insightiq 5.0.1/5.1.0
Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability.
network
low complexity
dell CWE-327
critical
9.8
2024-09-10 CVE-2024-42425 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dell 7920 XL Firmware and Precision 7920 Firmware
Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer vulnerability.
local
low complexity
dell CWE-119
5.5
2024-09-06 CVE-2024-38486 Command Injection vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
network
low complexity
dell CWE-77
8.8
2024-09-06 CVE-2024-39585 Use of Hard-coded Credentials vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability.
network
low complexity
dell CWE-798
8.1