Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2021-04-30 CVE-2021-21530 OS Command Injection vulnerability in Dell Openmanage Enterprise-Modular
Dell OpenManage Enterprise-Modular (OME-M) versions prior to 1.30.00 contain a security bypass vulnerability.
network
low complexity
dell CWE-78
8.8
2021-04-30 CVE-2021-21531 Incorrect Resource Transfer Between Spheres vulnerability in Dell products
Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerability.
local
low complexity
dell CWE-669
7.8
2021-04-30 CVE-2021-21507 Inadequate Encryption Strength vulnerability in Dell products
Dell EMC Networking X-Series firmware versions prior to 3.0.1.8 and Dell EMC PowerEdge VRTX Switch Module firmware versions prior to 2.0.0.82 contain a Weak Password Encryption Vulnerability.
network
low complexity
dell CWE-326
critical
9.8
2021-04-30 CVE-2021-21544 Improper Authentication vulnerability in Dell Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability.
network
low complexity
dell CWE-287
2.7
2021-04-30 CVE-2021-21543 Cross-site Scripting vulnerability in Dell Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.40.00.00 contain multiple stored cross-site scripting vulnerabilities.
network
low complexity
dell CWE-79
4.8
2021-04-30 CVE-2021-21542 Cross-site Scripting vulnerability in Dell Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.40.10.00 contain multiple stored cross-site scripting vulnerabilities.
network
low complexity
dell CWE-79
4.8
2021-04-30 CVE-2021-21541 Cross-site Scripting vulnerability in Dell Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.40.00.00 contain a DOM-based cross-site scripting vulnerability.
network
low complexity
dell CWE-79
6.1
2021-04-30 CVE-2021-21537 Information Exposure vulnerability in Dell Hybrid Client 1.0/1.1/1.1.01
Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability.
local
low complexity
dell CWE-200
5.5
2021-04-30 CVE-2021-21536 Information Exposure vulnerability in Dell Hybrid Client 1.0/1.1/1.1.01
Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability.
local
low complexity
dell CWE-200
5.5
2021-04-30 CVE-2021-21535 Missing Authentication for Critical Function vulnerability in Dell Hybrid Client 1.0/1.1/1.1.01
Dell Hybrid Client versions prior to 1.5 contain a missing authentication for a critical function vulnerability.
local
low complexity
dell CWE-306
7.8