Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-08 CVE-2024-48010 Unspecified vulnerability in Dell Data Domain Operating System
Dell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability.
network
low complexity
dell
7.2
2024-10-18 CVE-2024-47241 Improper Certificate Validation vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vulnerability.
network
low complexity
dell CWE-295
8.1
2024-10-18 CVE-2024-48016 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell Secure Connect Gateway 5.24.00.14
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability.
network
low complexity
dell CWE-327
8.8
2024-10-17 CVE-2024-45766 Unspecified vulnerability in Dell Openmanage Enterprise 3.5/3.6.1/3.8.4
Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code Injection') vulnerability.
network
low complexity
dell
8.8
2024-09-26 CVE-2024-39577 Unspecified vulnerability in Dell Smartfabric Os10 10.5.3.0/10.5.3.4/10.5.3.5
Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
network
low complexity
dell
8.8
2024-09-26 CVE-2024-37125 Unspecified vulnerability in Dell Smartfabric Os10 10.5.3.0/10.5.3.4/10.5.3.5
Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x,10.5.3.x, contains an Uncontrolled Resource Consumption vulnerability.
network
low complexity
dell
7.5
2024-09-10 CVE-2024-42427 Command Injection vulnerability in Dell Wyse Thinos 9.5.1079/9.5.2109
Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
low complexity
dell CWE-77
7.6
2024-09-06 CVE-2024-38486 Command Injection vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
network
low complexity
dell CWE-77
8.8
2024-09-06 CVE-2024-39585 Use of Hard-coded Credentials vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability.
network
low complexity
dell CWE-798
8.1
2024-08-28 CVE-2023-43078 Unspecified vulnerability in Dell products
Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or Denial of Service.
local
low complexity
dell
7.3