Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-02-11 CVE-2022-34447 OS Command Injection vulnerability in Dell Powerpath Management Appliance
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-02-11 CVE-2022-34448 Cross-Site Request Forgery (CSRF) vulnerability in Dell Powerpath Management Appliance
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Cross-site Request Forgery vulnerability.
network
low complexity
dell CWE-352
8.8
2023-02-11 CVE-2022-34449 Use of Hard-coded Credentials vulnerability in Dell Powerpath Management Appliance 3.2/3.3
PowerPath Management Appliance with versions 3.3 & 3.2* contains a Hardcoded Cryptographic Keys vulnerability.
local
low complexity
dell CWE-798
6.0
2023-02-11 CVE-2022-34450 Unspecified vulnerability in Dell Powerpath Management Appliance 3.3
PowerPath Management Appliance with version 3.3 contains Privilege Escalation vulnerability.
local
low complexity
dell
6.7
2023-02-11 CVE-2022-34451 Cross-site Scripting vulnerability in Dell Powerpath Management Appliance
PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Stored Cross-site Scripting Vulnerability.
network
low complexity
dell CWE-79
4.8
2023-02-11 CVE-2022-45104 OS Command Injection vulnerability in Dell products
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain a command execution vulnerability.
network
low complexity
dell CWE-78
8.8
2023-02-11 CVE-2022-46675 Information Exposure Through an Error Message vulnerability in Dell Wyse Management Suite
Wyse Management Suite Repository 3.8 and below contain an information disclosure vulnerability.
network
low complexity
dell CWE-209
5.3
2023-02-11 CVE-2022-46676 Unspecified vulnerability in Dell Wyse Management Suite
Wyse Management Suite 3.8 and below contain an improper access control vulnerability.
network
low complexity
dell
4.9
2023-02-11 CVE-2022-46677 Unspecified vulnerability in Dell Wyse Management Suite
Wyse Management Suite 3.8 and below contain an improper access control vulnerability with which an custom group admin can create a subgroup under a group for which the admin is not authorized.
network
low complexity
dell
4.9
2023-02-11 CVE-2022-46678 Unspecified vulnerability in Dell Wyse Management Suite
Wyse Management Suite 3.8 and below contain an improper access control vulnerability.
network
low complexity
dell
4.9