Vulnerabilities > Dell

DATE CVE VULNERABILITY TITLE RISK
2020-09-02 CVE-2020-5386 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Elastic Cloud Storage 3.4.0.0/3.4.0.1
Dell EMC ECS, versions prior to 3.5, contains an Exposure of Resource vulnerability.
network
low complexity
dell CWE-668
7.5
2020-09-02 CVE-2020-5379 Unspecified vulnerability in Dell Inspiron 7352 Bios
Dell Inspiron 7352 BIOS versions prior to A12 contain a UEFI BIOS Boot Services overwrite vulnerability.
low complexity
dell
6.8
2020-09-02 CVE-2020-5378 Use After Free vulnerability in Dell G7 17 7790 Bios
Dell G7 17 7790 BIOS versions prior to 1.13.2 contain a UEFI BIOS Boot Services overwrite vulnerability.
low complexity
dell CWE-416
6.8
2020-09-02 CVE-2020-5376 Use After Free vulnerability in Dell Inspiron 7347 Bios
Dell Inspiron 7347 BIOS versions prior to A13 contain a UEFI BIOS Boot Services overwrite vulnerability.
low complexity
dell CWE-416
6.8
2020-09-02 CVE-2020-5369 Incorrect Permission Assignment for Critical Resource vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability.
network
low complexity
dell CWE-732
8.8
2020-08-27 CVE-2020-5383 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dell EMC Isilon and EMC Powerscale Onefs
Dell EMC Isilon OneFS version 8.2.2 and Dell EMC PowerScale OneFS version 9.0.0 contains a buffer overflow vulnerability in the Likewise component.
network
low complexity
dell CWE-119
5.3
2020-08-18 CVE-2020-5385 Incorrect Permission Assignment for Critical Resource vulnerability in Dell Encryption and Endpoint Security Suite Enterprise
Dell Encryption versions prior to 10.8 and Dell Endpoint Security Suite versions prior to 2.8 contain a privilege escalation vulnerability because of an incomplete fix for CVE-2020-5358.
local
low complexity
dell CWE-732
7.8
2020-07-28 CVE-2020-5377 Path Traversal vulnerability in Dell EMC Openmanage Server Administrator
Dell EMC OpenManage Server Administrator (OMSA) versions 9.4 and prior contain multiple path traversal vulnerabilities.
network
low complexity
dell CWE-22
critical
9.1
2020-07-14 CVE-2020-5374 Use of Hard-coded Credentials vulnerability in Dell EMC Omimssc for Sccm and EMC Omimssc for Scvmm
Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain a hard-coded cryptographic key vulnerability.
network
low complexity
dell CWE-798
7.5
2020-07-14 CVE-2020-5373 Missing Authentication for Critical Function vulnerability in Dell EMC Omimssc for Sccm and EMC Omimssc for Scvmm
Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain an improper authentication vulnerability.
network
low complexity
dell CWE-306
7.5