Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2022-04-08 CVE-2021-36287 OS Command Injection vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the system.
network
low complexity
dell CWE-78
critical
9.8
2022-04-08 CVE-2021-36288 Path Traversal vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files
network
low complexity
dell CWE-22
critical
9.1
2022-04-08 CVE-2021-36290 Improper Privilege Management vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability.
local
low complexity
dell CWE-269
6.7
2022-04-08 CVE-2021-36293 Improper Privilege Management vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability.
local
low complexity
dell CWE-269
6.7
2022-04-08 CVE-2022-22563 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd.
local
low complexity
dell
4.4
2022-04-08 CVE-2022-24428 Improper Preservation of Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges.
network
low complexity
dell CWE-281
8.8
2022-04-08 CVE-2022-26851 Use of Insufficiently Random Values vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability.
network
low complexity
dell CWE-330
critical
9.1
2022-04-08 CVE-2022-26852 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator.
network
low complexity
dell CWE-335
critical
9.8
2022-04-08 CVE-2022-26854 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms.
network
low complexity
dell CWE-327
critical
9.8
2022-04-08 CVE-2022-26855 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
5.5