Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-02-01 CVE-2024-22449 Missing Authentication for Critical Function vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerability.
local
low complexity
dell CWE-306
7.8
2024-01-25 CVE-2024-22432 Insufficiently Protected Credentials vulnerability in Dell Networker
Networker 19.9 and all prior versions contains a Plain-text Password stored in temporary config file during backup duration in NMDA MySQL Database backups.
local
low complexity
dell CWE-522
6.5
2024-01-24 CVE-2024-22229 Improper Encoding or Escaping of Output vulnerability in Dell products
Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by an authenticated attacker.
network
low complexity
dell CWE-116
4.3
2024-01-24 CVE-2023-44281 Unspecified vulnerability in Dell Pair
Dell Pair Installer version prior to 1.2.1 contains an elevation of privilege vulnerability.
local
low complexity
dell
7.1
2024-01-16 CVE-2024-22428 Incorrect Default Permissions vulnerability in Dell EMC Idrac Service Module
Dell iDRAC Service Module, versions 5.2.0.0 and prior, contain an Incorrect Default Permissions vulnerability. It may allow a local unprivileged user to escalate privileges and execute arbitrary code on the affected system.
local
low complexity
dell CWE-276
7.8
2023-12-22 CVE-2023-39251 Unspecified vulnerability in Dell products
Dell BIOS contains an Improper Input Validation vulnerability.
local
low complexity
dell
6.7
2023-12-22 CVE-2023-43088 Unspecified vulnerability in Dell Precision 7865 Tower Firmware
Dell Client BIOS contains a pre-boot direct memory access (DMA) vulnerability.
low complexity
dell
6.8
2023-12-22 CVE-2023-48670 Untrusted Search Path vulnerability in Dell Supportassist for Home PCS 3.14.2.45116
Dell SupportAssist for Home PCs version 3.14.1 and prior versions contain a privilege escalation vulnerability in the installer.
local
low complexity
dell CWE-426
7.8
2023-12-18 CVE-2023-28053 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Networker
Dell NetWorker Virtual Edition versions 19.8 and below contain the use of deprecated cryptographic algorithms in the SSH component.
network
low complexity
dell CWE-327
5.3
2023-12-14 CVE-2023-48671 Unspecified vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability.
network
low complexity
dell
7.5