Vulnerabilities > Dell > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-23 CVE-2023-43066 OS Command Injection vulnerability in Dell products
Dell Unity prior to 5.3 contains a Restricted Shell Bypass vulnerability.
local
low complexity
dell CWE-78
7.8
2023-10-23 CVE-2023-43074 Unspecified vulnerability in Dell products
Dell Unity 5.3 contain(s) an Arbitrary File Creation vulnerability.
network
low complexity
dell
7.5
2023-10-13 CVE-2023-43079 Improper Access Control vulnerability in Dell EMC Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.0.0 and prior, contains an Improper Access Control vulnerability.
local
low complexity
dell CWE-284
7.8
2023-10-05 CVE-2023-43068 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the restricted shell in SSH.
network
low complexity
dell CWE-78
8.8
2023-10-05 CVE-2023-43069 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contain(s) an OS Command Injection Vulnerability in the CLI.
local
low complexity
dell CWE-78
7.8
2023-10-05 CVE-2023-43072 Improper Access Control vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an improper access control vulnerability in the CLI.
local
low complexity
dell CWE-284
7.8
2023-10-05 CVE-2023-4401 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ‘more’ command.
network
low complexity
dell CWE-78
8.8
2023-09-29 CVE-2023-32477 Improper Access Control vulnerability in Dell Common Event Enabler 8.9.8.2
Dell Common Event Enabler 8.9.8.2 for Windows and prior, contain an improper access control vulnerability.
local
low complexity
dell CWE-284
7.8
2023-09-27 CVE-2023-4129 Inadequate Encryption Strength vulnerability in Dell Data Protection Central 19.9.010
Dell Data Protection Central, version 19.9, contains an Inadequate Encryption Strength Vulnerability.
network
low complexity
dell CWE-326
7.5
2023-09-27 CVE-2023-28055 Improper Authorization vulnerability in Dell Networker
Dell NetWorker, Version 19.7 has an improper authorization vulnerability in the NetWorker client.
low complexity
dell CWE-285
8.8