Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2021-10-01 CVE-2021-36298 Unspecified vulnerability in Dell Isilon Insightiq Firmware
Dell EMC InsightIQ, versions prior to 4.1.4, contain risky cryptographic algorithms in the SSH component.
network
low complexity
dell
critical
9.8
2021-10-01 CVE-2021-36309 Insufficiently Protected Credentials vulnerability in Dell Enterprise Sonic OS
Dell Enterprise SONiC OS, versions 3.3.0 and earlier, contains a sensitive information disclosure vulnerability.
network
low complexity
dell CWE-522
6.5
2021-09-28 CVE-2021-21522 Unspecified vulnerability in Dell products
Dell BIOS contains a Credentials Management issue.
local
low complexity
dell
4.4
2021-09-28 CVE-2021-21569 Path Traversal vulnerability in Dell EMC Networker
Dell NetWorker, versions 18.x and 19.x contain a Path traversal vulnerability.
network
low complexity
dell CWE-22
4.9
2021-09-28 CVE-2021-21570 Unspecified vulnerability in Dell EMC Networker
Dell NetWorker, versions 18.x and 19.x contain an Information disclosure vulnerability.
network
low complexity
dell
4.9
2021-09-28 CVE-2021-36283 Unspecified vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell
6.7
2021-09-28 CVE-2021-36284 Unspecified vulnerability in Dell products
Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability.
local
low complexity
dell
4.4
2021-09-28 CVE-2021-36285 Unspecified vulnerability in Dell products
Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability.
local
low complexity
dell
4.4
2021-09-28 CVE-2021-36286 Link Following vulnerability in Dell Supportassist Client Consumer
Dell SupportAssist Client Consumer versions 3.9.13.0 and any versions prior to 3.9.13.0 contain an arbitrary file deletion vulnerability that can be exploited by using the Windows feature of NTFS called Symbolic links.
local
low complexity
dell CWE-59
7.1
2021-09-28 CVE-2021-36297 Untrusted Search Path vulnerability in Dell Supportassist for Home PCS
SupportAssist Client version 3.8 and 3.9 contains an Untrusted search path vulnerability that allows attackers to load an arbitrary .dll file via .dll planting/hijacking, only by a separate administrative action that is not a default part of the SOSInstallerTool.exe installation for executing arbitrary dll's,
local
low complexity
dell CWE-426
7.8