Vulnerabilities > Dell > Powerstoreos

DATE CVE VULNERABILITY TITLE RISK
2023-07-21 CVE-2023-32478 Unspecified vulnerability in Dell Powerstoreos
Dell PowerStore versions prior to 3.5.0.1 contain an insertion of sensitive information into log file vulnerability.
network
low complexity
dell
4.9
2022-10-21 CVE-2022-26870 Improper Authentication vulnerability in Dell Powerstoreos 2.1.0.0/2.1.0.1
Dell PowerStore versions 2.1.0.x contain an Authentication bypass vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2022-06-02 CVE-2022-22556 Resource Exhaustion vulnerability in Dell Powerstoreos
Dell PowerStore contains an Uncontrolled Resource Consumption Vulnerability in PowerStore User Interface.
network
low complexity
dell CWE-400
7.5
2022-06-02 CVE-2022-22557 Insufficiently Protected Credentials vulnerability in Dell Powerstoreos
PowerStore contains Plain-Text Password Storage Vulnerability in PowerStore X & T environments running versions 2.0.0.x and 2.0.1.x A locally authenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials.
local
low complexity
dell CWE-522
7.8
2022-06-02 CVE-2022-26866 Cross-site Scripting vulnerability in Dell Powerstoreos
Dell PowerStore Versions before v2.1.1.0.
network
low complexity
dell CWE-79
5.5
2022-06-02 CVE-2022-26867 Improper Neutralization of Formula Elements in a CSV File vulnerability in Dell Powerstoreos
PowerStore SW v2.1.1.0 supports the option to export data to either a CSV or an XLSX file.
network
low complexity
dell CWE-1236
8.0
2022-06-02 CVE-2022-26868 OS Command Injection vulnerability in Dell Powerstoreos
Dell EMC PowerStore versions 2.0.0.x, 2.0.1.x, and 2.1.0.x are vulnerable to a command injection flaw.
local
low complexity
dell CWE-78
7.8
2022-06-02 CVE-2022-26869 Exposure of Resource to Wrong Sphere vulnerability in Dell Powerstoreos
Dell PowerStore versions 2.0.0.x, 2.0.1.x and 2.1.0.x contains an open port vulnerability.
network
low complexity
dell CWE-668
critical
9.8