Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2019-09-03 CVE-2019-3751 Improper Certificate Validation vulnerability in Dell EMC Enterprise Copy Data Management
Dell EMC Enterprise Copy Data Management (eCDM) versions 1.0, 1.1, 2.0, 2.1, and 3.0 contain a certificate validation vulnerability.
network
high complexity
dell CWE-295
7.4
2019-08-20 CVE-2019-3753 Insufficiently Protected Credentials vulnerability in Dell products
Dell EMC PowerConnect 8024, 7000, M6348, M6220, M8024 and M8024-K running firmware versions prior to 5.1.15.2 contain a plain-text password storage vulnerability.
network
low complexity
dell CWE-522
6.5
2019-08-09 CVE-2019-3744 Race Condition vulnerability in Dell Digital Delivery
Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability.
local
low complexity
dell CWE-362
7.8
2019-08-09 CVE-2019-3742 Unspecified vulnerability in Dell Digital Delivery
Dell/Alienware Digital Delivery versions prior to 3.5.2013 contain a privilege escalation vulnerability.
local
low complexity
dell
7.8
2019-08-05 CVE-2019-3717 Unspecified vulnerability in Dell products
Select Dell Client Commercial and Consumer platforms contain an Improper Access Vulnerability.
low complexity
dell
6.8
2019-07-18 CVE-2019-3741 Protection Mechanism Failure vulnerability in Dell products
Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain a plain-text password storage vulnerability.
local
low complexity
dell CWE-693
7.8
2019-07-18 CVE-2019-3734 Unspecified vulnerability in Dell products
Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain an improper authorization vulnerability in NAS Server quotas configuration.
network
low complexity
dell
4.3
2019-06-25 CVE-2019-12280 Uncontrolled Search Path Element vulnerability in multiple products
PC-Doctor Toolbox before 7.3 has an Uncontrolled Search Path Element.
local
low complexity
pc-doctor dell CWE-427
7.8
2019-06-20 CVE-2019-3735 Improper Privilege Management vulnerability in Dell products
Dell SupportAssist for Business PCs version 2.0 and Dell SupportAssist for Home PCs version 2.2, 2.2.1, 2.2.2, 2.2.3, 3.0, 3.0.1, 3.0.2, 3.1, 3.2, and 3.2.1 contain an Improper Privilege Management Vulnerability.
local
low complexity
dell CWE-269
7.8
2019-06-19 CVE-2019-3737 Path Traversal vulnerability in Dell Avamar Data Migration Enabler web Interface 1.0.50/1.0.51
Dell EMC Avamar ADMe Web Interface 1.0.50 and 1.0.51 are affected by an LFI vulnerability which may allow a malicious user to download arbitrary files from the affected system by sending a specially crafted request to the Web Interface application.
network
low complexity
dell CWE-22
7.5