Vulnerabilities > Dell > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-07-07 CVE-2022-33936 Unspecified vulnerability in Dell Cloud Mobility for Dell EMC Storage 1.3.0
Cloud Mobility for Dell EMC Storage, 1.3.0.XXX contains a RCE vulnerability.
network
low complexity
dell
critical
10.0
2022-06-28 CVE-2022-31230 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain broken or risky cryptographic algorithm.
network
low complexity
dell CWE-327
critical
10.0
2022-06-02 CVE-2022-29084 Improper Restriction of Excessive Authentication Attempts vulnerability in Dell products
Dell Unity, Dell UnityVSA, and Dell Unity XT versions before 5.2.0.0.5.173 do not restrict excessive authentication attempts in Unisphere GUI.
network
low complexity
dell CWE-307
critical
10.0
2022-05-26 CVE-2022-24422 Improper Authentication vulnerability in Dell Idrac9
Dell iDRAC9 versions 5.00.00.00 and later but prior to 5.10.10.00, contain an improper authentication vulnerability.
network
low complexity
dell CWE-287
critical
10.0
2022-04-08 CVE-2021-36287 OS Command Injection vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the system.
network
low complexity
dell CWE-78
critical
10.0
2022-04-08 CVE-2022-26854 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms.
network
low complexity
dell CWE-327
critical
10.0
2022-04-01 CVE-2022-23155 Unrestricted Upload of File with Dangerous Type vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions 2.0 through 3.5.2 contain an unrestricted file upload vulnerability.
network
low complexity
dell CWE-434
critical
9.0
2022-02-09 CVE-2021-36302 Improper Privilege Management vulnerability in Dell EMC Integrated System for Microsoft Azure Stack HUB Firmware
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability.
network
low complexity
dell CWE-269
critical
9.0
2022-01-25 CVE-2021-36295 OS Command Injection vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability.
network
low complexity
dell CWE-78
critical
9.0
2022-01-25 CVE-2021-36296 OS Command Injection vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability.
network
low complexity
dell CWE-78
critical
9.0