Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-12-13 CVE-2024-47984 Unspecified vulnerability in Dell Recoverpoint for Virtual Machines 6.0
Dell RecoverPoint for Virtual Machines 6.0.x contains Denial of Service vulnerability.
network
low complexity
dell
6.5
2024-12-13 CVE-2024-22461 OS Command Injection vulnerability in Dell Recoverpoint for Virtual Machines 6.0
Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability.
network
low complexity
dell CWE-78
8.8
2024-12-13 CVE-2024-38488 Improper Restriction of Excessive Authentication Attempts vulnerability in Dell Recoverpoint for Virtual Machines 6.0
Dell RecoverPoint for Virtual Machines 6.0.x contains a vulnerability.
network
low complexity
dell CWE-307
critical
9.8
2024-12-13 CVE-2024-48007 Use of Hard-coded Credentials vulnerability in Dell Recoverpoint for Virtual Machines 6.0
Dell RecoverPoint for Virtual Machines 6.0.x contains use of hard-coded credentials vulnerability.
network
low complexity
dell CWE-798
critical
9.8
2024-12-13 CVE-2024-48008 OS Command Injection vulnerability in Dell Recoverpoint for Virtual Machines 6.0
Dell RecoverPoint for Virtual Machines 6.0.x contains a OS Command Injection vulnerability.
network
low complexity
dell CWE-78
6.5
2024-12-12 CVE-2024-47238 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
6.7
2024-12-11 CVE-2024-52537 Link Following vulnerability in Dell products
Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability.
local
low complexity
dell CWE-59
6.7
2024-12-11 CVE-2024-53289 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Dell Thinos 2408
Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability.
local
high complexity
dell CWE-367
7.0
2024-12-11 CVE-2024-53290 Command Injection vulnerability in Dell Thinos 2408
Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
local
low complexity
dell CWE-77
8.4
2024-12-11 CVE-2024-53292 Insufficiently Protected Credentials vulnerability in Dell Vxrail Hyperconverged Infrastructure
Dell VxVerify, versions prior to x.40.405, contain a Plain-text Password Storage Vulnerability in the shell wrapper.
local
low complexity
dell CWE-522
6.7