Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2022-01-25 CVE-2021-36295 OS Command Injection vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability.
network
low complexity
dell CWE-78
7.2
2022-01-25 CVE-2021-36296 OS Command Injection vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability.
network
low complexity
dell CWE-78
7.2
2022-01-25 CVE-2021-36346 Unspecified vulnerability in Dell Integrated Dell Remote Access Controller 8 Firmware
Dell iDRAC 8 prior to version 2.82.82.82 contain a denial of service vulnerability.
network
low complexity
dell
5.3
2022-01-25 CVE-2021-36347 Out-of-bounds Write vulnerability in Dell products
iDRAC9 versions prior to 5.00.20.00 and iDRAC8 versions prior to 2.82.82.82 contain a stack-based buffer overflow vulnerability.
network
low complexity
dell CWE-787
7.2
2022-01-25 CVE-2021-36348 Injection vulnerability in Dell Integrated Dell Remote Access Controller 9 Firmware
iDRAC9 versions prior to 5.00.20.00 contain an input injection vulnerability.
network
low complexity
dell CWE-74
8.1
2022-01-24 CVE-2021-36342 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
6.7
2022-01-24 CVE-2021-36343 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
6.7
2022-01-24 CVE-2021-36349 Server-Side Request Forgery (SSRF) vulnerability in Dell EMC Data Protection Central
Dell EMC Data Protection Central versions 19.5 and prior contain a Server Side Request Forgery vulnerability in the DPC DNS client processing.
network
low complexity
dell CWE-918
4.3
2022-01-24 CVE-2021-43588 Improper Input Validation vulnerability in Dell EMC Data Protection Central
Dell EMC Data Protection Central version 19.5 contains an Improper Input Validation Vulnerability.
network
low complexity
dell CWE-20
7.5
2022-01-24 CVE-2021-43589 OS Command Injection vulnerability in Dell products
Dell EMC Unity, Dell EMC UnityVSA and Dell EMC Unity XT versions prior to 5.1.2.0.5.007 contain an operating system (OS) command injection Vulnerability.
local
low complexity
dell CWE-78
6.7