Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-12-12 CVE-2024-47238 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
6.7
2024-12-11 CVE-2024-52537 Link Following vulnerability in Dell products
Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability.
local
low complexity
dell CWE-59
6.7
2024-12-11 CVE-2024-53289 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Dell Thinos 2408
Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability.
local
high complexity
dell CWE-367
7.0
2024-12-11 CVE-2024-53290 Command Injection vulnerability in Dell Thinos 2408
Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
local
low complexity
dell CWE-77
8.4
2024-12-11 CVE-2024-53292 Insufficiently Protected Credentials vulnerability in Dell Vxrail Hyperconverged Infrastructure
Dell VxVerify, versions prior to x.40.405, contain a Plain-text Password Storage Vulnerability in the shell wrapper.
local
low complexity
dell CWE-522
6.7
2024-12-10 CVE-2024-47484 Unspecified vulnerability in Dell Avamar Server
Dell Avamar, version(s) 19.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability.
network
low complexity
dell
critical
9.8
2024-12-10 CVE-2024-47977 Unspecified vulnerability in Dell Avamar Server
Dell Avamar, version(s) 19.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability.
network
low complexity
dell
8.8
2024-12-10 CVE-2024-52538 Unspecified vulnerability in Dell Avamar Server
Dell Avamar, version(s) 19.x, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability.
network
low complexity
dell
8.8
2024-12-09 CVE-2024-45760 Missing Authorization vulnerability in Dell Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper access control vulnerability.
network
low complexity
dell CWE-862
8.8
2024-12-09 CVE-2024-45761 Unspecified vulnerability in Dell Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper input validation vulnerability.
network
low complexity
dell
8.1