Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2022-06-10 CVE-2022-29093 Path Traversal vulnerability in Dell products
Dell SupportAssist Client Consumer versions (3.10.4 and versions prior) and Dell SupportAssist Client Commercial versions (3.1.1 and versions prior) contain an arbitrary file deletion vulnerability.
local
low complexity
dell CWE-22
7.1
2022-06-10 CVE-2022-29094 Path Traversal vulnerability in Dell products
Dell SupportAssist Client Consumer versions (3.10.4 and versions prior) and Dell SupportAssist Client Commercial versions (3.1.1 and versions prior) contain an arbitrary file deletion/overwrite vulnerability.
local
low complexity
dell CWE-22
7.1
2022-06-02 CVE-2022-22556 Resource Exhaustion vulnerability in Dell Powerstoreos
Dell PowerStore contains an Uncontrolled Resource Consumption Vulnerability in PowerStore User Interface.
network
low complexity
dell CWE-400
7.5
2022-06-02 CVE-2022-22557 Insufficiently Protected Credentials vulnerability in Dell Powerstoreos
PowerStore contains Plain-Text Password Storage Vulnerability in PowerStore X & T environments running versions 2.0.0.x and 2.0.1.x A locally authenticated attacker could potentially exploit this vulnerability, leading to the disclosure of certain user credentials.
local
low complexity
dell CWE-522
7.8
2022-06-02 CVE-2022-26867 Improper Neutralization of Formula Elements in a CSV File vulnerability in Dell Powerstoreos
PowerStore SW v2.1.1.0 supports the option to export data to either a CSV or an XLSX file.
network
low complexity
dell CWE-1236
8.0
2022-06-02 CVE-2022-26868 OS Command Injection vulnerability in Dell Powerstoreos
Dell EMC PowerStore versions 2.0.0.x, 2.0.1.x, and 2.1.0.x are vulnerable to a command injection flaw.
local
low complexity
dell CWE-78
7.8
2022-06-01 CVE-2020-26184 Improper Certificate Validation vulnerability in multiple products
Dell BSAFE Micro Edition Suite, versions prior to 4.5.1, contain an Improper Certificate Validation vulnerability.
network
low complexity
dell oracle CWE-295
7.5
2022-06-01 CVE-2020-26185 Out-of-bounds Read vulnerability in multiple products
Dell BSAFE Micro Edition Suite, versions prior to 4.5.1, contain a Buffer Over-Read Vulnerability.
network
low complexity
dell oracle CWE-125
7.5
2022-06-01 CVE-2022-29098 Weak Password Requirements vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability.
network
low complexity
dell CWE-521
7.5
2022-05-26 CVE-2022-26857 Unspecified vulnerability in Dell Openmanage Enterprise 3.5/3.6.1
Dell OpenManage Enterprise Versions 3.8.3 and prior contain an improper authorization vulnerability.
network
low complexity
dell
8.8