Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-01-18 CVE-2022-34393 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
high complexity
dell CWE-20
7.5
2023-01-18 CVE-2022-34401 Out-of-bounds Write vulnerability in Dell products
Dell BIOS contains a stack based buffer overflow vulnerability.
local
high complexity
dell CWE-787
7.5
2023-01-18 CVE-2022-34456 Code Injection vulnerability in Dell EMC Metro Node
Dell EMC Metro node, Version(s) prior to 7.1, contain a Code Injection Vulnerability.
network
low complexity
dell CWE-94
8.8
2023-01-18 CVE-2022-34460 Improper Input Validation vulnerability in Dell products
Prior Dell BIOS versions contain an improper input validation vulnerability.
local
high complexity
dell CWE-20
7.8
2023-01-11 CVE-2022-34441 Use of Hard-coded Credentials vulnerability in Dell EMC Secure Connect Gateway Policy Manager 5.10.00.00/5.12.00.00
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability.
network
low complexity
dell CWE-798
critical
9.8
2023-01-11 CVE-2022-34440 Use of Hard-coded Credentials vulnerability in Dell EMC Secure Connect Gateway Policy Manager 5.10.00.00/5.12.00.00
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability.
network
low complexity
dell CWE-798
critical
9.8
2022-10-21 CVE-2020-5355 Incorrect Default Permissions vulnerability in Dell EMC Isilon Onefs
The Dell Isilon OneFS versions 8.2.2 and earlier SSHD process improperly allows Transmission Control Protocol (TCP) and stream forwarding.
network
low complexity
dell CWE-276
4.3
2022-10-21 CVE-2022-26870 Improper Authentication vulnerability in Dell Powerstoreos 2.1.0.0/2.1.0.1
Dell PowerStore versions 2.1.0.x contain an Authentication bypass vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2022-10-21 CVE-2022-31239 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, and 9.3.0.6, contain sensitive data in log files vulnerability.
local
low complexity
dell CWE-532
4.4
2022-10-21 CVE-2022-34437 OS Command Injection vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.2-9.3.0, contain an OS command injection vulnerability.
local
low complexity
dell CWE-78
6.7