Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-02-16 CVE-2024-22426 OS Command Injection vulnerability in Dell Recoverpoint for Virtual Machines 5.3/6.0
Dell RecoverPoint for Virtual Machines 5.3.x, 6.0.SP1 contains an OS Command injection vulnerability.
network
low complexity
dell CWE-78
critical
9.8
2024-02-15 CVE-2023-28078 Unspecified vulnerability in Dell Smartfabric Os10
Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured.
network
low complexity
dell
critical
9.1
2024-02-15 CVE-2023-32462 OS Command Injection vulnerability in Dell Smartfabric Os10
Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication.
network
low complexity
dell CWE-78
critical
9.8
2024-02-15 CVE-2023-32484 Unspecified vulnerability in Dell Enterprise Sonic Distribution
Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input validation vulnerability.
network
low complexity
dell
critical
9.8
2024-02-15 CVE-2023-39244 Unspecified vulnerability in Dell Enterprise Storage Integrator for SAP Landscape Management
DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component.
network
low complexity
dell
critical
9.8
2024-02-15 CVE-2023-39245 Unspecified vulnerability in Dell Enterprise Storage Integrator for SAP Landscape Management
DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component.
network
low complexity
dell
critical
9.8
2024-02-14 CVE-2023-44294 Unspecified vulnerability in Dell Secure Connect Gateway
In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API.
network
low complexity
dell
6.5
2024-02-14 CVE-2023-25535 Unspecified vulnerability in Dell Supportassist for Home PCS
Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has a high vulnerability that can result in local privilege escalation (LPE).
local
low complexity
dell
6.5
2024-02-14 CVE-2023-39249 Unspecified vulnerability in Dell Supportassist for Home PCS 3.4.0
Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass vulnerability that allows locally authenticated non-admin users to gain temporary privilege within the SupportAssist User Interface on their respective PC.
local
low complexity
dell
5.3
2024-02-14 CVE-2023-44283 Unspecified vulnerability in Dell products
In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has been identified, impacting locally authenticated users on their respective PCs.
local
low complexity
dell
7.8