Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2024-03-01 CVE-2024-24903 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, version 5.10+, contain a weak password recovery mechanism for forgotten passwords.
low complexity
dell
8.0
2024-03-01 CVE-2024-24904 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability.
low complexity
dell
7.6
2024-03-01 CVE-2024-24905 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability.
low complexity
dell
7.6
2024-03-01 CVE-2024-24907 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability in the Filters page.
low complexity
dell
7.6
2024-03-01 CVE-2023-39254 Unspecified vulnerability in Dell Update Package Framework 3.8.3.67/4.9.4.36
Dell Update Package (DUP), Versions prior to 4.9.10 contain an Uncontrolled Search Path vulnerability.
local
low complexity
dell
7.3
2024-03-01 CVE-2024-24900 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain an improper authorization vulnerability.
low complexity
dell
7.3
2024-03-01 CVE-2024-24906 Unspecified vulnerability in Dell Secure Connect Gateway
Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability in Policy page.
low complexity
dell
7.6
2024-03-01 CVE-2024-22457 Unspecified vulnerability in Dell Secure Connect Gateway 5.20.00.10
Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path.
network
low complexity
dell
8.8
2024-02-14 CVE-2023-44283 Unspecified vulnerability in Dell products
In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has been identified, impacting locally authenticated users on their respective PCs.
local
low complexity
dell
7.8
2024-02-13 CVE-2024-22445 Unspecified vulnerability in Dell Powerprotect Data Manager
Dell PowerProtect Data Manager, version 19.15 and prior versions, contain an OS command injection vulnerability.
network
low complexity
dell
7.2