Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2022-09-06 CVE-2022-26861 Unspecified vulnerability in Dell products
Dell BIOS versions contain an Insecure Automated Optimization vulnerability.
local
low complexity
dell
7.8
2022-09-02 CVE-2022-34369 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3 , contain an insertion of sensitive information in log files vulnerability.
network
low complexity
dell CWE-532
7.5
2022-09-02 CVE-2022-34382 Unspecified vulnerability in Dell Alienware Update, Command Update and Update
Dell Command Update, Dell Update and Alienware Update versions prior to 4.6.0 contains a Local Privilege Escalation Vulnerability in the custom catalog configuration.
local
low complexity
dell
7.8
2022-09-01 CVE-2022-34380 Improper Authentication vulnerability in Dell Cloudlink
Dell CloudLink 7.1.3 and all earlier versions contain an Authentication Bypass Using an Alternate Path or Channel Vulnerability.
local
low complexity
dell CWE-287
8.2
2022-08-31 CVE-2022-31233 Incorrect Resource Transfer Between Spheres vulnerability in Dell products
Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability.
low complexity
dell CWE-669
8.0
2022-08-31 CVE-2022-34373 Path Traversal vulnerability in Dell Command | Integration Suite for System Center
Dell Command | Integration Suite for System Center, versions prior to 6.2.0, contains arbitrary file write vulnerability.
local
low complexity
dell CWE-22
7.8
2022-08-31 CVE-2022-34383 OS Command Injection vulnerability in Dell Edge Gateway 5200 Firmware
Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability.
local
low complexity
dell CWE-78
8.2
2022-08-30 CVE-2022-34374 OS Command Injection vulnerability in Dell Container Storage Modules
Dell Container Storage Modules 1.2 contains an OS command injection in goiscsi and gobrick libraries.
network
low complexity
dell CWE-78
8.8
2022-08-10 CVE-2022-33928 Cleartext Storage of Sensitive Information vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Plain-text Password Storage Vulnerability in UI.
network
low complexity
dell CWE-312
8.8
2022-08-10 CVE-2022-33930 Information Exposure Through an Error Message vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains Information Disclosure in Devices error pages.
network
low complexity
dell CWE-209
7.5