Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-10-11 CVE-2022-34431 Unspecified vulnerability in Dell Hybrid Client
Dell Hybrid Client below 1.8 version contains a guest user profile corruption vulnerability.
network
low complexity
dell
6.5
2022-10-11 CVE-2022-34434 Unspecified vulnerability in Dell Cloud Mobility for Dell EMC Storage 1.3.0
Cloud Mobility for Dell Storage versions 1.3.0 and earlier contains an Improper Access Control vulnerability within the Postgres database.
local
low complexity
dell
6.7
2022-10-10 CVE-2022-34402 Unspecified vulnerability in Dell Wyse Thinos
Dell Wyse ThinOS 2205 contains a Regular Expression Denial of Service Vulnerability in UI.
network
low complexity
dell
4.9
2022-09-28 CVE-2022-29089 Insufficiently Protected Credentials vulnerability in Dell Smartfabric Os10
Dell Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an information disclosure vulnerability.
network
low complexity
dell CWE-522
4.9
2022-09-12 CVE-2022-31220 Unchecked Return Value vulnerability in Dell products
Dell BIOS versions contain an Unchecked Return Value vulnerability.
local
low complexity
dell CWE-252
5.1
2022-09-12 CVE-2022-31222 Missing Release of Resource after Effective Lifetime vulnerability in Dell products
Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability.
local
low complexity
dell CWE-772
4.4
2022-09-12 CVE-2022-31225 Unchecked Return Value vulnerability in Dell products
Dell BIOS versions contain an Unchecked Return Value vulnerability.
local
low complexity
dell CWE-252
5.1
2022-09-02 CVE-2022-34378 Path Traversal vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3, contain a relative path traversal vulnerability.
local
low complexity
dell CWE-22
5.5
2022-08-30 CVE-2022-33935 Cross-site Scripting vulnerability in Dell EMC Data Protection Advisor
Dell EMC Data Protection Advisor versions 19.6 and earlier, contains a Stored Cross Site Scripting, an attacker could potentially exploit this vulnerability, leading to the storage of malicious HTML or JavaScript codes in a trusted application data store.
network
low complexity
dell CWE-79
5.4
2022-08-30 CVE-2022-34368 Improper Handling of Exceptional Conditions vulnerability in Dell EMC Networker
Dell EMC NetWorker 19.2.1.x 19.3.x, 19.4.x, 19.5.x, 19.6.x and 19.7.0.0 contain an Improper Handling of Insufficient Permissions or Privileges vulnerability.
network
low complexity
dell CWE-755
6.5