Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-49560 Command Injection vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a command injection vulnerability.
local
low complexity
dell CWE-77
7.8
2024-11-08 CVE-2024-45763 OS Command Injection vulnerability in Dell Enterprise Sonic Distribution
Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability.
network
low complexity
dell CWE-78
7.2
2024-11-08 CVE-2024-45764 Unspecified vulnerability in Dell Enterprise Sonic Distribution
Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) a Missing Critical Step in Authentication vulnerability.
network
low complexity
dell
critical
9.8
2024-11-08 CVE-2024-45765 OS Command Injection vulnerability in Dell Enterprise Sonic Distribution
Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability.
network
low complexity
dell CWE-78
7.2
2024-11-08 CVE-2024-45759 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect Data Domain, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an escalation of privilege vulnerability.
local
low complexity
dell
7.3
2024-11-08 CVE-2024-48010 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability.
network
low complexity
dell
7.2
2024-11-08 CVE-2024-48011 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to 7.7.5.50, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability.
network
low complexity
dell
6.5
2024-10-25 CVE-2024-47481 Unspecified vulnerability in Dell Data Lakehouse 1.0.0.0/1.1.0.0
Dell Data Lakehouse, version(s) 1.0.0.0, 1.1.0., contain(s) an Improper Access Control vulnerability.
low complexity
dell
6.5
2024-10-25 CVE-2024-47483 SQL Injection vulnerability in Dell Data Lakehouse 1.0.0.0/1.1.0.0
Dell Data Lakehouse, version(s) 1.0.0.0 and 1.1.0.0, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability.
local
low complexity
dell CWE-89
5.5
2024-10-18 CVE-2024-47241 Improper Certificate Validation vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vulnerability.
network
low complexity
dell CWE-295
8.1