Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2020-29504 Improper Certificate Validation vulnerability in Dell products
Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain a Missing Required Cryptographic Step Vulnerability.
network
low complexity
dell CWE-295
critical
9.8
2024-02-02 CVE-2021-21575 Information Exposure Through Discrepancy vulnerability in Dell Bsafe Micro-Edition-Suite
Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.
network
low complexity
dell CWE-203
critical
9.8
2024-02-02 CVE-2022-34381 Unspecified vulnerability in Dell Bsafe Crypto-J and Bsafe Ssl-J
Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain an unmaintained third-party component vulnerability.
network
low complexity
dell
critical
9.8
2024-02-01 CVE-2024-22430 Incorrect Default Permissions vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.x through 9.6.0.x contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
5.5
2024-02-01 CVE-2024-22449 Missing Authentication for Critical Function vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerability.
local
low complexity
dell CWE-306
7.8
2024-01-25 CVE-2024-22432 Insufficiently Protected Credentials vulnerability in Dell Networker
Networker 19.9 and all prior versions contains a Plain-text Password stored in temporary config file during backup duration in NMDA MySQL Database backups.
local
low complexity
dell CWE-522
6.5
2024-01-24 CVE-2024-22229 Improper Encoding or Escaping of Output vulnerability in Dell products
Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by an authenticated attacker.
network
low complexity
dell CWE-116
4.3
2024-01-24 CVE-2023-44281 Unspecified vulnerability in Dell Pair
Dell Pair Installer version prior to 1.2.1 contains an elevation of privilege vulnerability.
local
low complexity
dell
7.1
2024-01-16 CVE-2024-22428 Incorrect Default Permissions vulnerability in Dell EMC Idrac Service Module
Dell iDRAC Service Module, versions 5.2.0.0 and prior, contain an Incorrect Default Permissions vulnerability. It may allow a local unprivileged user to escalate privileges and execute arbitrary code on the affected system.
local
low complexity
dell CWE-276
7.8
2023-12-22 CVE-2023-39251 Unspecified vulnerability in Dell products
Dell BIOS contains an Improper Input Validation vulnerability.
local
low complexity
dell
6.7