Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-33929 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in EndUserSummary page.
network
low complexity
dell CWE-79
6.1
2022-08-10 CVE-2022-33930 Information Exposure Through an Error Message vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains Information Disclosure in Devices error pages.
network
low complexity
dell CWE-209
7.5
2022-08-10 CVE-2022-33931 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-34365 Path Traversal vulnerability in Dell Wyse Management Suite
WMS 3.7 contains a Path Traversal Vulnerability in Device API.
network
low complexity
dell CWE-22
6.5
2022-08-09 CVE-2022-29083 Improper Authentication vulnerability in Dell products
Prior Dell BIOS versions contain an Improper Authentication vulnerability.
low complexity
dell CWE-287
6.8
2022-07-21 CVE-2022-22555 OS Command Injection vulnerability in Dell products
Dell EMC PowerStore, contains an OS command injection Vulnerability.
local
low complexity
dell CWE-78
6.7
2022-07-21 CVE-2022-31234 Improper Restriction of Excessive Authentication Attempts vulnerability in Dell products
Dell EMC PowerStore, contain(s) an Improper Restriction of Excessive Authentication Attempts Vulnerability in PowerStore Manager GUI.
network
low complexity
dell CWE-307
critical
9.8
2022-07-21 CVE-2022-32498 Uncontrolled Search Path Element vulnerability in Dell Powerstore Command Line Interface
Dell EMC PowerStore, Versions prior to v3.0.0.0 contain a DLL Hijacking vulnerability in PSTCLI.
local
low complexity
dell CWE-427
7.8
2022-07-21 CVE-2022-33923 OS Command Injection vulnerability in Dell products
Dell PowerStore, versions prior to 3.0.0.0, contains an OS Command Injection vulnerability in PowerStore T environment.
local
low complexity
dell CWE-78
7.8
2022-07-21 CVE-2022-34367 Cross-Site Request Forgery (CSRF) vulnerability in Dell EMC Data Protection Central
Dell EMC Data Protection Central versions 19.1, 19.2, 19.3, 19.4, 19.5, 19.6, contain(s) a Cross-Site Request Forgery Vulnerability.
network
low complexity
dell CWE-352
8.8