Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2021-01-05 CVE-2020-29489 Cleartext Storage of Sensitive Information vulnerability in Dell products
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.0.4.0.5.012 contains a plain-text password storage vulnerability.
local
low complexity
dell CWE-312
6.7
2021-01-05 CVE-2020-26199 Information Exposure Through Log Files vulnerability in Dell products
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.0.4.0.5.012 contain a plain-text password storage vulnerability.
local
low complexity
dell CWE-532
6.7
2021-01-05 CVE-2020-26181 Unspecified vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
Dell EMC Isilon OneFS versions 8.1 and later and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability on a SmartLock Compliance mode cluster.
local
low complexity
dell
7.8
2021-01-04 CVE-2020-5361 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Dell CPG Bios
Select Dell Client Commercial and Consumer platforms support a BIOS password reset capability that is designed to assist authorized customers who forget their passwords.
low complexity
dell CWE-640
7.6
2021-01-04 CVE-2020-29498 Open Redirect vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions prior to 3.1 contain an open redirect vulnerability.
network
low complexity
dell CWE-601
6.1
2021-01-04 CVE-2020-29497 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions prior to 3.1 contain a stored cross-site scripting vulnerability.
network
low complexity
dell CWE-79
5.4
2021-01-04 CVE-2020-29496 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions prior to 3.1 contain a stored cross-site scripting vulnerability.
network
low complexity
dell CWE-79
4.8
2021-01-04 CVE-2020-29492 Incorrect Default Permissions vulnerability in Dell Wyse Thinos 8.6
Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability.
network
low complexity
dell CWE-276
critical
10.0
2021-01-04 CVE-2020-29491 Incorrect Default Permissions vulnerability in Dell Wyse Thinos 8.6
Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability.
network
low complexity
dell CWE-276
8.6
2020-12-16 CVE-2020-5360 Out-of-bounds Read vulnerability in multiple products
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability.
network
low complexity
dell oracle CWE-125
7.5