Vulnerabilities > Dell > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-11-30 CVE-2021-36330 Insufficient Session Expiration vulnerability in Dell EMC Streaming Data Platform
Dell EMC Streaming Data Platform versions before 1.3 contain an Insufficient Session Expiration Vulnerability.
network
low complexity
dell CWE-613
critical
9.8
2021-11-23 CVE-2021-36312 Use of Hard-coded Password vulnerability in Dell Cloudlink
Dell EMC CloudLink 7.1 and all prior versions contain a Hard-coded Password Vulnerability.
network
low complexity
dell CWE-259
critical
9.1
2021-11-23 CVE-2021-36314 Unspecified vulnerability in Dell EMC Cloud Link
Dell EMC CloudLink 7.1 and all prior versions contain an Arbitrary File Creation Vulnerability.
network
low complexity
dell
critical
9.8
2021-11-20 CVE-2021-36306 Improper Authentication vulnerability in Dell Networking Os10
Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains an authentication bypass vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2021-11-20 CVE-2021-36308 Improper Authentication vulnerability in Dell Networking Os10
Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an authentication bypass vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2021-11-20 CVE-2021-36320 Insufficient Entropy vulnerability in Dell products
Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an authentication bypass vulnerability.
network
low complexity
dell CWE-331
critical
9.8
2021-10-01 CVE-2021-36298 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Isilon Insightiq Firmware
Dell EMC InsightIQ, versions prior to 4.1.4, contain risky cryptographic algorithms in the SSH component.
network
low complexity
dell CWE-327
critical
9.8
2021-08-09 CVE-2021-21564 Improper Authentication vulnerability in Dell Openmanage Enterprise 3.5
Dell OpenManage Enterprise versions prior to 3.6.1 contain an improper authentication vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2021-07-29 CVE-2021-21538 Improper Authentication vulnerability in Dell Idrac9 Firmware 4.40.00.00
Dell EMC iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.10.00, contain an improper authentication vulnerability.
network
low complexity
dell CWE-287
critical
10.0
2021-07-28 CVE-2020-5341 Deserialization of Untrusted Data vulnerability in Dell products
Deserialization of Untrusted Data Vulnerability Dell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2, 19.1 and 19.2 and Dell EMC Integrated Data Protection Appliance versions 2.0, 2.1, 2.2, 2.3, 2.4 and 2.4.1 contain a Deserialization of Untrusted Data Vulnerability.
network
low complexity
dell CWE-502
critical
9.8