Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2021-12-21 CVE-2021-36350 Improper Authentication vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass by primary weakness in one of the authentication factors.
network
low complexity
dell CWE-287
7.5
2021-11-30 CVE-2021-36328 SQL Injection vulnerability in Dell EMC Streaming Data Platform
Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Injection Vulnerability.
network
low complexity
dell CWE-89
8.8
2021-11-23 CVE-2021-36299 SQL Injection vulnerability in Dell EMC Idrac9 Firmware
Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability.
network
low complexity
dell CWE-89
8.1
2021-11-23 CVE-2021-36300 SQL Injection vulnerability in Dell EMC Idrac9 Firmware
iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability.
network
low complexity
dell CWE-89
8.2
2021-11-23 CVE-2021-36301 Out-of-bounds Write vulnerability in Dell EMC Idrac8 Firmware and EMC Idrac9 Firmware
Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm.
network
low complexity
dell CWE-787
7.2
2021-11-23 CVE-2021-36311 Unspecified vulnerability in Dell EMC Networker
Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability.
local
low complexity
dell
7.8
2021-11-23 CVE-2021-36313 OS Command Injection vulnerability in Dell Cloudlink
Dell EMC CloudLink 7.1 and all prior versions contain an OS command injection Vulnerability.
network
low complexity
dell CWE-78
7.2
2021-11-23 CVE-2021-36335 Improper Input Validation vulnerability in Dell EMC Cloud Link
Dell EMC CloudLink 7.1 and all prior versions contain an Improper Input Validation Vulnerability.
network
low complexity
dell CWE-20
8.8
2021-11-20 CVE-2021-36307 Improper Privilege Management vulnerability in Dell Networking Os10
Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains a privilege escalation vulnerability.
network
low complexity
dell CWE-269
8.8
2021-11-20 CVE-2021-36321 Improper Input Validation vulnerability in Dell products
Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an improper input validation vulnerability.
network
low complexity
dell CWE-20
7.5