Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-02-10 CVE-2022-24410 Cleartext Storage of Sensitive Information vulnerability in Dell products
Dell BIOS contains an information exposure vulnerability.
high complexity
dell CWE-312
4.2
2023-02-10 CVE-2022-34452 Exposure of Resource to Wrong Sphere vulnerability in Dell Powerpath Management Appliance
PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerability.
network
low complexity
dell CWE-668
2.7
2023-02-10 CVE-2022-34454 Out-of-bounds Write vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow.
local
low complexity
dell CWE-787
6.7
2023-02-07 CVE-2023-23696 Incorrect Authorization vulnerability in Dell Command | Intel Vpro OUT of Band
Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability.
local
low complexity
dell CWE-863
7.8
2023-02-03 CVE-2023-24576 Code Injection vulnerability in Dell EMC Networker
EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsrexecd) irrespective of any auth used.
network
low complexity
dell CWE-94
critical
9.8
2023-02-02 CVE-2023-24574 Resource Exhaustion vulnerability in Dell Enterprise Sonic Distribution
Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component.
network
low complexity
dell CWE-400
7.5
2023-02-01 CVE-2023-22573 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool.
local
low complexity
dell CWE-532
5.5
2023-02-01 CVE-2023-22574 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module.
network
low complexity
dell CWE-532
8.1
2023-02-01 CVE-2023-22575 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog.
network
low complexity
dell CWE-532
8.8
2023-02-01 CVE-2023-22572 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api.
local
low complexity
dell CWE-532
7.8