Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-06-23 CVE-2023-32464 Improper Certificate Validation vulnerability in Dell products
Dell VxRail, versions prior to 7.0.450, contain an improper certificate validation vulnerability.
network
high complexity
dell CWE-295
3.3
2023-06-22 CVE-2023-32449 Improper Verification of Cryptographic Signature vulnerability in Dell Powerstoret OS
Dell PowerStore versions prior to 3.5 contain an improper verification of cryptographic signature vulnerability.
local
low complexity
dell CWE-347
7.8
2023-06-14 CVE-2023-32465 Improper Neutralization of HTTP Headers for Scripting Syntax vulnerability in Dell Powerprotect Cyber Recovery
Dell Power Protect Cyber Recovery, contains an Authentication Bypass vulnerability.
network
low complexity
dell CWE-644
8.8
2023-06-01 CVE-2023-28043 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Secure Connect Gateway 5.14.00.16
Dell SCG 5.14 contains an information disclosure vulnerability during the SRS to SCG upgrade path.
network
low complexity
dell CWE-327
6.5
2023-06-01 CVE-2023-28066 Improper Access Control vulnerability in Dell OS Recovery Tool 2.2.4013/2.3.7012.0
Dell OS Recovery Tool, versions 2.2.4013 and 2.3.7012.0, contain an Improper Access Control Vulnerability.
local
low complexity
dell CWE-284
7.8
2023-05-31 CVE-2023-25539 OS Command Injection vulnerability in Dell Networker
Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client.
network
low complexity
dell CWE-78
critical
9.8
2023-05-30 CVE-2023-24568 Improper Validation of Certificate with Host Mismatch vulnerability in Dell Networker
Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which could disallow replacing CA signed certificates.
network
low complexity
dell CWE-297
4.3
2023-05-30 CVE-2023-28079 Incorrect Default Permissions vulnerability in Dell Powerpath 7.0/7.1/7.2
PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains Insecure File and Folder Permissions vulnerability.
local
low complexity
dell CWE-276
7.8
2023-05-30 CVE-2023-28080 Uncontrolled Search Path Element vulnerability in Dell Powerpath 7.0/7.1/7.2
PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains DLL Hijacking Vulnerabilities.
local
low complexity
dell CWE-427
7.3
2023-05-30 CVE-2023-32448 Cleartext Storage of Sensitive Information vulnerability in Dell Powerpath 7.0/7.1/7.2
PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains License Key Stored in Cleartext vulnerability.
local
low complexity
dell CWE-312
5.5