Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2024-02-12 CVE-2024-22224 OS Command Injection vulnerability in Dell Unity Operating Environment 5.0.7.0.5.008/5.2.0.0.5.173/5.3.0.0.5.120
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-22225 OS Command Injection vulnerability in Dell Unity Operating Environment 5.0.7.0.5.008/5.2.0.0.5.173/5.3.0.0.5.120
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_supportassist utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-22227 OS Command Injection vulnerability in Dell Unity Operating Environment 5.0.7.0.5.008/5.2.0.0.5.173/5.3.0.0.5.120
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_dc utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-22228 OS Command Injection vulnerability in Dell Unity Operating Environment 5.0.7.0.5.008/5.2.0.0.5.173/5.3.0.0.5.120
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cifssupport utility.
local
low complexity
dell CWE-78
7.8
2024-02-06 CVE-2023-32451 Improper Privilege Management vulnerability in Dell Display Manager 2.0.0/2.1.0/2.1.1
Dell Display Manager application, version 2.1.1.17, contains a vulnerability that low privilege user can execute malicious code during installation and uninstallation
local
low complexity
dell CWE-269
7.8
2024-02-06 CVE-2023-32454 Link Following vulnerability in Dell Update Package Framework 3.8.3.67
DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability.
local
low complexity
dell CWE-59
7.1
2024-02-06 CVE-2023-32479 Unspecified vulnerability in Dell products
Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 contain privilege escalation vulnerability due to improper ACL of the non-default installation directory.
local
low complexity
dell
7.8
2024-02-06 CVE-2023-25543 Improper Handling of Exceptional Conditions vulnerability in Dell Power Manager 3.10/3.11/3.3
Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in DPM service.
local
low complexity
dell CWE-755
7.8
2024-02-06 CVE-2023-28049 Improper Privilege Management vulnerability in Dell Command | Monitor 10.9
Dell Command | Monitor, versions prior to 10.9, contain an arbitrary folder deletion vulnerability.
local
low complexity
dell CWE-269
7.1
2024-02-01 CVE-2024-22449 Missing Authentication for Critical Function vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerability.
local
low complexity
dell CWE-306
7.8