Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2025-03-17 CVE-2024-49561 Incorrect Privilege Assignment vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Incorrect Privilege Assignment vulnerability.
local
low complexity
dell CWE-266
7.8
2025-02-13 CVE-2025-22480 Link Following vulnerability in Dell Supportassist 3.2.0.90
Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability.
local
low complexity
dell CWE-59
7.8
2025-02-12 CVE-2024-29171 Unspecified vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability.
network
low complexity
dell
7.5
2025-02-12 CVE-2024-29172 Improper Locking vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability.
network
low complexity
dell CWE-667
7.5
2025-02-07 CVE-2025-22402 Unspecified vulnerability in Dell Update Manager Plugin
Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability.
network
low complexity
dell
5.4
2025-02-05 CVE-2025-21117 Operation on a Resource after Expiration or Release vulnerability in Dell Avamar Server
Dell Avamar, version 19.4 or later, contains an access token reuse vulnerability in the AUI.
local
low complexity
dell CWE-672
5.5
2025-02-04 CVE-2025-22475 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability.
network
low complexity
dell CWE-327
7.5
2025-02-01 CVE-2024-53295 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability.
local
low complexity
dell
7.8
2025-02-01 CVE-2024-51534 Path Traversal vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability.
local
low complexity
dell CWE-22
7.1
2025-02-01 CVE-2024-53296 Out-of-bounds Write vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in the RestAPI.
network
low complexity
dell CWE-787
4.9