Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2021-01-04 CVE-2020-5361 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Dell CPG Bios
Select Dell Client Commercial and Consumer platforms support a BIOS password reset capability that is designed to assist authorized customers who forget their passwords.
low complexity
dell CWE-640
7.6
2021-01-04 CVE-2020-29498 Open Redirect vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions prior to 3.1 contain an open redirect vulnerability.
network
low complexity
dell CWE-601
6.1
2021-01-04 CVE-2020-29497 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions prior to 3.1 contain a stored cross-site scripting vulnerability.
network
low complexity
dell CWE-79
5.4
2021-01-04 CVE-2020-29496 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions prior to 3.1 contain a stored cross-site scripting vulnerability.
network
low complexity
dell CWE-79
4.8
2021-01-04 CVE-2020-29492 Incorrect Default Permissions vulnerability in Dell Wyse Thinos 8.6
Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability.
network
low complexity
dell CWE-276
critical
10.0
2021-01-04 CVE-2020-29491 Incorrect Default Permissions vulnerability in Dell Wyse Thinos 8.6
Dell Wyse ThinOS 8.6 and prior versions contain an insecure default configuration vulnerability.
network
low complexity
dell CWE-276
8.6
2020-12-16 CVE-2020-5360 Out-of-bounds Read vulnerability in multiple products
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to a Buffer Under-Read Vulnerability.
network
low complexity
dell oracle CWE-125
7.5
2020-12-16 CVE-2020-5359 Unchecked Return Value vulnerability in multiple products
Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to an Unchecked Return Value Vulnerability.
network
low complexity
dell oracle CWE-252
5.8
2020-12-16 CVE-2020-26198 Cross-site Scripting vulnerability in Dell Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 4.32.10.00 and 4.40.00.00 contain a reflected cross-site scripting vulnerability in the iDRAC9 web application.
network
low complexity
dell CWE-79
6.1
2020-11-10 CVE-2020-5388 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dell Inspiron 15 7579 Firmware
Dell Inspiron 15 7579 2-in-1 BIOS versions prior to 1.31.0 contain an Improper SMM communication buffer verification vulnerability.
high complexity
dell CWE-119
6.9