Vulnerabilities > Dell > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-02-09 CVE-2021-36302 Improper Privilege Management vulnerability in Dell EMC Integrated System for Microsoft Azure Stack HUB Firmware
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability.
network
low complexity
dell CWE-269
critical
9.9
2022-01-25 CVE-2021-36294 Use of Insufficiently Random Values vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability.
network
low complexity
dell CWE-330
critical
9.8
2022-01-21 CVE-2022-22553 Improper Restriction of Excessive Authentication Attempts vulnerability in Dell EMC Appsync 3.9.0.0/4.2.0.0/4.3.0.0
Dell EMC AppSync versions 3.9 to 4.3 contain an Improper Restriction of Excessive Authentication Attempts Vulnerability that can be exploited from UI and CLI.
network
low complexity
dell CWE-307
critical
9.8
2021-12-21 CVE-2021-36336 Unspecified vulnerability in Dell Wyse Management Suite
Wyse Management Suite 3.3.1 and below versions contain a deserialization vulnerability that could allow an unauthenticated attacker to execute code on the affected system.
network
low complexity
dell
critical
9.8
2021-11-30 CVE-2021-36330 Unspecified vulnerability in Dell EMC Streaming Data Platform
Dell EMC Streaming Data Platform versions before 1.3 contain an Insufficient Session Expiration Vulnerability.
network
low complexity
dell
critical
9.8
2021-11-23 CVE-2021-36312 Unspecified vulnerability in Dell Cloudlink
Dell EMC CloudLink 7.1 and all prior versions contain a Hard-coded Password Vulnerability.
network
low complexity
dell
critical
9.1
2021-11-23 CVE-2021-36314 Unspecified vulnerability in Dell EMC Cloud Link
Dell EMC CloudLink 7.1 and all prior versions contain an Arbitrary File Creation Vulnerability.
network
low complexity
dell
critical
9.8
2021-11-20 CVE-2021-36306 Unspecified vulnerability in Dell Networking Os10
Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains an authentication bypass vulnerability.
network
low complexity
dell
critical
9.8
2021-11-20 CVE-2021-36308 Improper Authentication vulnerability in Dell Networking Os10
Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an authentication bypass vulnerability.
network
low complexity
dell CWE-287
critical
9.8
2021-11-20 CVE-2021-36320 Unspecified vulnerability in Dell products
Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an authentication bypass vulnerability.
network
low complexity
dell
critical
9.8