Vulnerabilities > Dell > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-11-23 | CVE-2021-36300 | Unspecified vulnerability in Dell EMC Idrac9 Firmware iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. | 8.2 |
2021-11-23 | CVE-2021-36301 | Out-of-bounds Write vulnerability in Dell EMC Idrac8 Firmware and EMC Idrac9 Firmware Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. | 7.2 |
2021-11-23 | CVE-2021-36311 | Unspecified vulnerability in Dell EMC Networker Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability. | 7.8 |
2021-11-23 | CVE-2021-36313 | OS Command Injection vulnerability in Dell Cloudlink Dell EMC CloudLink 7.1 and all prior versions contain an OS command injection Vulnerability. | 7.2 |
2021-11-23 | CVE-2021-36335 | Unspecified vulnerability in Dell EMC Cloud Link Dell EMC CloudLink 7.1 and all prior versions contain an Improper Input Validation Vulnerability. | 8.8 |
2021-11-20 | CVE-2021-36307 | Unspecified vulnerability in Dell Networking Os10 Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains a privilege escalation vulnerability. | 8.8 |
2021-11-20 | CVE-2021-36321 | Unspecified vulnerability in Dell products Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an improper input validation vulnerability. | 7.5 |
2021-11-12 | CVE-2021-21528 | Unspecified vulnerability in Dell EMC Powerscale Onefs 9.1.0.0/9.2.0.0/9.2.1.0 Dell EMC PowerScale OneFS versions 9.1.0, 9.2.0.x, 9.2.1.x contain an Exposure of Information through Directory Listing vulnerability. | 7.5 |
2021-09-28 | CVE-2021-36286 | Link Following vulnerability in Dell Supportassist Client Consumer Dell SupportAssist Client Consumer versions 3.9.13.0 and any versions prior to 3.9.13.0 contain an arbitrary file deletion vulnerability that can be exploited by using the Windows feature of NTFS called Symbolic links. | 7.1 |
2021-09-28 | CVE-2021-36297 | Untrusted Search Path vulnerability in Dell Supportassist for Home PCS SupportAssist Client version 3.8 and 3.9 contains an Untrusted search path vulnerability that allows attackers to load an arbitrary .dll file via .dll planting/hijacking, only by a separate administrative action that is not a default part of the SOSInstallerTool.exe installation for executing arbitrary dll's, | 7.8 |