Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2023-02-01 CVE-2022-34458 Unspecified vulnerability in Dell Alienware Update, Command Update and Update
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in download operation component.
local
low complexity
dell
5.5
2023-02-01 CVE-2022-34459 Improper Verification of Cryptographic Signature vulnerability in Dell Alienware Update, Command Update and Update
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a improper verification of cryptographic signature in get applicable driver component.
local
low complexity
dell CWE-347
7.8
2023-02-01 CVE-2022-45095 Command Injection vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.x-9.4.x, contain a command injection vulnerability.
local
low complexity
dell CWE-77
6.7
2023-02-01 CVE-2022-45096 Improper Restriction of Rendered UI Layers or Frames vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.0 through 9.3.0, contain an User Interface Security Issue.
network
low complexity
dell CWE-1021
6.5
2023-02-01 CVE-2022-45097 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contains an Incorrect User Management vulnerability.
network
low complexity
dell
8.8
2023-02-01 CVE-2022-45101 Improper Privilege Management vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS.
network
low complexity
dell CWE-269
critical
9.8
2023-01-26 CVE-2022-34405 Unspecified vulnerability in Dell Realtek High Definition Audio Driver
An improper access control vulnerability was identified in the Realtek audio driver.
local
low complexity
dell
7.3
2023-01-20 CVE-2023-23691 HTTP Request Smuggling vulnerability in Dell products
Dell EMC PV ME5, versions ME5.1.0.0.0 and ME5.1.0.1.0, contains a Client-side desync Vulnerability.
network
low complexity
dell CWE-444
8.8
2023-01-19 CVE-2023-23690 Improper Certificate Validation vulnerability in Dell Cloud Mobility for Dell EMC Storage 1.3.0/1.3.1
Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability.
network
high complexity
dell CWE-295
7.0
2023-01-18 CVE-2022-45103 Information Exposure vulnerability in Dell products
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability.
network
low complexity
dell CWE-200
6.5