Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-02-02 CVE-2023-24574 Resource Exhaustion vulnerability in Dell Enterprise Sonic Distribution
Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component.
network
low complexity
dell CWE-400
7.5
2023-02-01 CVE-2023-22573 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool.
local
low complexity
dell CWE-532
5.5
2023-02-01 CVE-2023-22574 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module.
network
low complexity
dell CWE-532
8.1
2023-02-01 CVE-2023-22575 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog.
network
low complexity
dell CWE-532
8.8
2023-02-01 CVE-2023-22572 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api.
local
low complexity
dell CWE-532
7.8
2023-02-01 CVE-2023-23692 OS Command Injection vulnerability in Dell EMC Data Domain OS
Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability.
network
low complexity
dell CWE-78
8.8
2023-02-01 CVE-2022-32482 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
5.1
2023-02-01 CVE-2022-34396 Uncontrolled Search Path Element vulnerability in Dell Openmanage Server Administrator
Dell OpenManage Server Administrator (OMSA) version 10.3.0.0 and earlier contains a DLL Injection Vulnerability.
local
low complexity
dell CWE-427
7.8
2023-02-01 CVE-2022-34398 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Dell products
Dell BIOS contains a Time-of-check Time-of-use vulnerability.
local
high complexity
dell CWE-367
7.0
2023-02-01 CVE-2022-34403 Out-of-bounds Write vulnerability in Dell products
Dell BIOS contains a Stack based buffer overflow vulnerability.
local
low complexity
dell CWE-787
8.8