Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-03-01 CVE-2023-25544 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Networker
Dell NetWorker versions 19.5 and earlier contain 'Apache Tomcat' version disclosure vulnerability.
network
low complexity
dell CWE-668
6.5
2023-02-28 CVE-2023-23689 Resource Exhaustion vulnerability in Dell products
Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains an uncontrolled resource consumption vulnerability.
network
low complexity
dell CWE-400
7.5
2023-02-28 CVE-2023-25540 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
7.1
2023-02-21 CVE-2023-24575 Unspecified vulnerability in Dell Multifunction Printer E525W Driver and Software Suite
Dell Multifunction Printer E525w Driver and Software Suite, versions prior to 1.047.2022, A05, contain a local privilege escalation vulnerability that could be exploited by malicious users to compromise the affected system
local
low complexity
dell
7.8
2023-02-17 CVE-2023-23695 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Secure Connect Gateway 5.12.00.10/5.14.00.12
Dell Secure Connect Gateway (SCG) version 5.14.00.12 contains a broken cryptographic algorithm vulnerability.
network
high complexity
dell CWE-327
5.9
2023-02-14 CVE-2022-22564 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell products
Dell EMC Unity versions before 5.2.0.0.5.173 , use(es) broken cryptographic algorithm.
network
high complexity
dell CWE-327
5.9
2023-02-13 CVE-2022-34397 Unspecified vulnerability in Dell products
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below contains an authorization bypass vulnerability, allowing users to perform actions in which they are not authorized.
low complexity
dell
5.7
2023-02-13 CVE-2023-23697 Link Following vulnerability in Dell Command | Intel Vpro OUT of Band
Dell Command | Intel vPro Out of Band, versions before 4.4.0, contain an arbitrary folder delete vulnerability during uninstallation.
local
low complexity
dell CWE-59
3.3
2023-02-13 CVE-2023-24572 Link Following vulnerability in Dell Command | Integration Suite for System Center 6.2.0
Dell Command | Integration Suite for System Center, versions before 6.4.0 contain an arbitrary folder delete vulnerability during uninstallation.
local
low complexity
dell CWE-59
3.3
2023-02-11 CVE-2022-34384 Improper Privilege Management vulnerability in Dell products
Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell Update, and Alienware Update versions before 4.5 contain a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component.
local
low complexity
dell CWE-269
7.8