Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2022-10-11 CVE-2022-34430 XML Entity Expansion vulnerability in Dell Hybrid Client
Dell Hybrid Client below 1.8 version contains a Zip Bomb Vulnerability in UI.
network
low complexity
dell CWE-776
7.5
2022-10-11 CVE-2022-34431 Unspecified vulnerability in Dell Hybrid Client
Dell Hybrid Client below 1.8 version contains a guest user profile corruption vulnerability.
network
low complexity
dell
6.5
2022-10-11 CVE-2022-34432 Unspecified vulnerability in Dell Hybrid Client
Dell Hybrid Client below 1.8 version contains a gedit vulnerability.
network
low complexity
dell
8.2
2022-10-11 CVE-2022-34434 Unspecified vulnerability in Dell Cloud Mobility for Dell EMC Storage 1.3.0
Cloud Mobility for Dell Storage versions 1.3.0 and earlier contains an Improper Access Control vulnerability within the Postgres database.
local
low complexity
dell
6.7
2022-10-10 CVE-2022-34402 Unspecified vulnerability in Dell Wyse Thinos
Dell Wyse ThinOS 2205 contains a Regular Expression Denial of Service Vulnerability in UI.
network
low complexity
dell
4.9
2022-10-10 CVE-2022-34425 Use of Hard-coded Credentials vulnerability in Dell Enterprise Sonic Distribution 4.0.0/4.0.1
Dell Enterprise SONiC OS, 4.0.0, 4.0.1, contain a cryptographic key vulnerability in SSH.
network
low complexity
dell CWE-798
7.5
2022-09-30 CVE-2022-34428 Unspecified vulnerability in Dell Hybrid Client
Dell Hybrid Client prior to version 1.8 contains a Regular Expression Denial of Service Vulnerability in the UI.
network
low complexity
dell
2.7
2022-09-30 CVE-2022-34429 Path Traversal vulnerability in Dell Hybrid Client
Dell Hybrid Client below 1.8 version contains a Zip Slip Vulnerability in UI.
local
low complexity
dell CWE-22
7.1
2022-09-28 CVE-2022-29089 Insufficiently Protected Credentials vulnerability in Dell Smartfabric Os10
Dell Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an information disclosure vulnerability.
network
low complexity
dell CWE-522
4.9
2022-09-28 CVE-2022-34394 Improper Certificate Validation vulnerability in Dell Smartfabric Os10 10.5.3.4
Dell OS10, version 10.5.3.4, contains an Improper Certificate Validation vulnerability in Support Assist.
network
high complexity
dell CWE-295
3.7