Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-01 CVE-2022-34443 Improper Input Validation vulnerability in Dell Rugged Control Center
Dell Rugged Control Center, versions prior to 4.5, contain an Improper Input Validation in the Service EndPoint.
local
low complexity
dell CWE-20
7.8
2023-02-01 CVE-2022-34459 Improper Verification of Cryptographic Signature vulnerability in Dell Alienware Update, Command Update and Update
Dell Command | Update, Dell Update, and Alienware Update versions prior to 4.7 contain a improper verification of cryptographic signature in get applicable driver component.
local
low complexity
dell CWE-347
7.8
2023-02-01 CVE-2022-45097 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contains an Incorrect User Management vulnerability.
network
low complexity
dell
8.8
2023-01-26 CVE-2022-34405 Unspecified vulnerability in Dell Realtek High Definition Audio Driver
An improper access control vulnerability was identified in the Realtek audio driver.
local
low complexity
dell
7.3
2023-01-20 CVE-2023-23691 HTTP Request Smuggling vulnerability in Dell products
Dell EMC PV ME5, versions ME5.1.0.0.0 and ME5.1.0.1.0, contains a Client-side desync Vulnerability.
network
low complexity
dell CWE-444
8.8
2023-01-19 CVE-2023-23690 Improper Certificate Validation vulnerability in Dell Cloud Mobility for Dell EMC Storage 1.3.0/1.3.1
Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability.
network
high complexity
dell CWE-295
7.0
2023-01-18 CVE-2022-34457 Incorrect Permission Assignment for Critical Resource vulnerability in Dell Command|Configure
Dell command configuration, version 4.8 and prior, contains improper folder permission when installed not to default path but to non-secured path which leads to privilege escalation.
local
low complexity
dell CWE-732
7.8
2023-01-18 CVE-2022-34462 Use of Hard-coded Credentials vulnerability in Dell EMC Secure Connect Gateway Policy Manager 5.10.00.00/5.12.00.00
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a Hard-coded Password Vulnerability.
local
low complexity
dell CWE-798
7.8
2023-01-18 CVE-2022-32490 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
high complexity
dell CWE-20
7.8
2023-01-18 CVE-2022-34393 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
high complexity
dell CWE-20
7.5