Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-18 CVE-2022-45103 Information Exposure vulnerability in Dell products
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability.
network
low complexity
dell CWE-200
6.5
2023-01-18 CVE-2022-34435 Improper Input Validation vulnerability in Dell Idrac9 Firmware
Dell iDRAC9 version 6.00.02.00 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set.
network
low complexity
dell CWE-20
4.9
2023-01-18 CVE-2022-34436 Improper Input Validation vulnerability in Dell Idrac8 Firmware
Dell iDRAC8 version 2.83.83.83 and prior contain an improper input validation vulnerability in Racadm when the firmware lock-down configuration is set.
network
low complexity
dell CWE-20
4.9
2022-10-21 CVE-2020-5355 Incorrect Default Permissions vulnerability in Dell EMC Isilon Onefs
The Dell Isilon OneFS versions 8.2.2 and earlier SSHD process improperly allows Transmission Control Protocol (TCP) and stream forwarding.
network
low complexity
dell CWE-276
4.3
2022-10-21 CVE-2022-31239 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, and 9.3.0.6, contain sensitive data in log files vulnerability.
local
low complexity
dell CWE-532
4.4
2022-10-21 CVE-2022-34437 OS Command Injection vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.2-9.3.0, contain an OS command injection vulnerability.
local
low complexity
dell CWE-78
6.7
2022-10-21 CVE-2022-34438 Improper Privilege Management vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.4.0.x, contain a privilege context switching error.
local
low complexity
dell CWE-269
6.7
2022-10-12 CVE-2022-32483 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
4.4
2022-10-12 CVE-2022-32484 Improper Input Validation vulnerability in Dell products
Dell BIOS contains an improper input validation vulnerability.
local
low complexity
dell CWE-20
4.4
2022-10-12 CVE-2022-33918 Cleartext Storage of Sensitive Information vulnerability in Dell Geodrive
Dell GeoDrive, Versions 2.1 - 2.2, contains an information disclosure vulnerability.
local
low complexity
dell CWE-312
5.5