Vulnerabilities > Dell
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-25 | CVE-2021-36348 | Injection vulnerability in Dell Integrated Dell Remote Access Controller 9 Firmware iDRAC9 versions prior to 5.00.20.00 contain an input injection vulnerability. | 8.1 |
2022-01-24 | CVE-2021-36342 | Improper Input Validation vulnerability in Dell products Dell BIOS contains an improper input validation vulnerability. | 6.7 |
2022-01-24 | CVE-2021-36343 | Improper Input Validation vulnerability in Dell products Dell BIOS contains an improper input validation vulnerability. | 6.7 |
2022-01-24 | CVE-2021-36349 | Server-Side Request Forgery (SSRF) vulnerability in Dell EMC Data Protection Central Dell EMC Data Protection Central versions 19.5 and prior contain a Server Side Request Forgery vulnerability in the DPC DNS client processing. | 4.3 |
2022-01-24 | CVE-2021-43588 | Improper Input Validation vulnerability in Dell EMC Data Protection Central Dell EMC Data Protection Central version 19.5 contains an Improper Input Validation Vulnerability. | 7.5 |
2022-01-24 | CVE-2021-43589 | OS Command Injection vulnerability in Dell products Dell EMC Unity, Dell EMC UnityVSA and Dell EMC Unity XT versions prior to 5.1.2.0.5.007 contain an operating system (OS) command injection Vulnerability. | 6.7 |
2022-01-24 | CVE-2022-22554 | Insufficiently Protected Credentials vulnerability in Dell EMC System Update Dell EMC System Update, version 1.9.2 and prior, contain an Unprotected Storage of Credentials vulnerability. | 5.5 |
2022-01-21 | CVE-2021-36338 | Reliance on Cookies without Validation and Integrity Checking vulnerability in Dell products Unisphere for PowerMax versions prior to 9.2.2.2 contains a privilege escalation vulnerability. | 8.0 |
2022-01-21 | CVE-2021-36339 | Unspecified vulnerability in Dell products The Dell EMC Virtual Appliances before 9.2.2.2 contain undocumented user accounts. | 7.8 |
2022-01-21 | CVE-2022-22551 | Session Fixation vulnerability in Dell EMC Appsync 3.9.0.0/4.2.0.0/4.3.0.0 DELL EMC AppSync versions 3.9 to 4.3 use GET request method with sensitive query strings. | 8.8 |