Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2022-04-12 CVE-2022-22549 Improper Certificate Validation vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation.
network
high complexity
dell CWE-295
8.1
2022-04-12 CVE-2022-22559 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Powerscale Onefs 9.3.0
Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm.
network
low complexity
dell CWE-327
7.5
2022-04-12 CVE-2022-22562 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit.
network
low complexity
dell
7.5
2022-04-12 CVE-2022-23161 Improper Handling of Exceptional Conditions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect.
network
low complexity
dell CWE-755
7.5
2022-04-12 CVE-2022-24411 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability.
local
low complexity
dell CWE-668
7.8
2022-04-12 CVE-2022-24412 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS 8.2.x - 9.3.0.x contain an improper handling of value vulnerability.
network
low complexity
dell
7.5
2022-04-08 CVE-2022-24428 Improper Preservation of Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges.
network
low complexity
dell CWE-281
8.8
2022-04-01 CVE-2022-23155 Unrestricted Upload of File with Dangerous Type vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions 2.0 through 3.5.2 contain an unrestricted file upload vulnerability.
network
low complexity
dell CWE-434
7.2
2022-04-01 CVE-2022-24426 Uncontrolled Search Path Element vulnerability in Dell Alienware Update, Command Update and Update
Dell Command | Update, Dell Update, and Alienware Update version 4.4.0 contains a Local Privilege Escalation Vulnerability in the Advanced Driver Restore component.
local
low complexity
dell CWE-427
7.8
2022-03-11 CVE-2022-24415 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-119
7.8