Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2024-07-02 CVE-2024-32852 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.0 contain use of a broken or risky cryptographic algorithm vulnerability.
network
low complexity
dell CWE-327
7.5
2024-07-02 CVE-2024-32853 Unspecified vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.2 contain an execution with unnecessary privileges vulnerability.
local
low complexity
dell
7.8
2024-06-26 CVE-2024-37140 OS Command Injection vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain an OS command injection vulnerability in an admin operation.
network
low complexity
dell CWE-78
8.8
2024-06-26 CVE-2024-29176 Out-of-bounds Write vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, version(s) 8.0, 7.13.1.0, 7.10.1.30, 7.7.5.40, contain(s) an Out-of-bounds Write vulnerability.
network
low complexity
dell CWE-787
8.8
2024-06-13 CVE-2024-29168 SQL Injection vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API.
network
low complexity
dell CWE-89
8.8
2024-06-13 CVE-2024-32858 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
8.2
2024-06-13 CVE-2024-32859 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
8.2
2024-06-13 CVE-2024-32860 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
8.2
2024-06-12 CVE-2024-28964 Deserialization of Untrusted Data vulnerability in Dell Common Event Enabler 8.9.10.0/8.9.8.2
Dell Common Event Enabler, version 8.9.10.0 and prior, contain an insecure deserialization vulnerability in CAVATools.
local
low complexity
dell CWE-502
7.8
2024-06-12 CVE-2024-25949 Unspecified vulnerability in Dell Networking Os10 10.5.5.5/10.5.6.0
Dell OS10 Networking Switches, versions10.5.6.x, 10.5.5.x, 10.5.4.x and 10.5.3.x ,contain an improper authorization vulnerability.
network
low complexity
dell
8.8