Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2023-44298 Improper Locking vulnerability in Dell products
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security vulnerability.
low complexity
dell CWE-667
6.8
2023-12-05 CVE-2023-39248 Unspecified vulnerability in Dell Networking Os10 10.5.5.5
Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Service) vulnerability, when switches are configured with VLT and VRRP.
network
low complexity
dell
7.5
2023-12-05 CVE-2023-44288 Unspecified vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS, 8.2.2.x through 9.6.0.x, contains an improper control of a resource through its lifetime vulnerability.
network
low complexity
dell
7.5
2023-12-05 CVE-2023-44295 Unspecified vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.2.x through 9.6.0.x contains an improper control of a resource through its lifetime vulnerability.
network
low complexity
dell
8.1
2023-12-04 CVE-2023-44291 OS Command Injection vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance.
network
low complexity
dell CWE-78
7.2
2023-12-04 CVE-2023-44300 Insufficiently Protected Credentials vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in the appliance.
local
low complexity
dell CWE-522
5.5
2023-12-04 CVE-2023-44301 Cross-site Scripting vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0 and prior contain a Reflected Cross-Site Scripting Vulnerability.
network
low complexity
dell CWE-79
5.4
2023-12-04 CVE-2023-44302 Improper Authentication vulnerability in Dell Powerprotect Data Manager Dm5500 Firmware
Dell DM5500 5.14.0.0 and prior contain an improper authentication vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2023-12-04 CVE-2023-44304 OS Command Injection vulnerability in Dell Dm5500 Firmware 5.14.0.0
Dell DM5500 contains a privilege escalation vulnerability in the appliance.
network
low complexity
dell CWE-78
8.8
2023-12-04 CVE-2023-44305 Out-of-bounds Write vulnerability in Dell Dm5500 Firmware 5.14.0.0
Dell DM5500 5.14.0.0, contains a Stack-based Buffer Overflow Vulnerability in the appliance.
network
low complexity
dell CWE-787
critical
9.8