Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-04-12 CVE-2022-23163 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2,x, 9.1.0.x, 9.2.1.x, and 9.3.0.x contain a denial of service vulnerability.
local
low complexity
dell CWE-668
5.5
2022-04-08 CVE-2021-36290 Improper Privilege Management vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability.
local
low complexity
dell CWE-269
6.7
2022-04-08 CVE-2021-36293 Improper Privilege Management vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability.
local
low complexity
dell CWE-269
6.7
2022-04-08 CVE-2022-22563 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd.
local
low complexity
dell
4.4
2022-04-08 CVE-2022-26855 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
5.5
2022-04-01 CVE-2022-23156 Improper Authentication vulnerability in Dell Wyse Device Agent 14.5.4.1
Wyse Device Agent version 14.6.1.4 and below contain an Improper Authentication vulnerability.
local
low complexity
dell CWE-287
6.7
2022-04-01 CVE-2022-23157 Information Exposure vulnerability in Dell Wyse Device Agent 14.5.4.1
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability.
local
low complexity
dell CWE-200
4.4
2022-04-01 CVE-2022-23158 Information Exposure vulnerability in Dell Wyse Device Agent 14.5.4.1
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability.
local
low complexity
dell CWE-200
4.4
2022-03-04 CVE-2021-43590 Cleartext Storage of Sensitive Information vulnerability in Dell Enterprise Storage Analytics 4.0.1/6.2.1
Dell EMC Enterprise Storage Analytics for vRealize Operations, versions 4.0.1 to 6.2.1, contain a Plain-text password storage vulnerability.
local
low complexity
dell CWE-312
6.0
2022-02-09 CVE-2022-22567 Insufficient Verification of Data Authenticity vulnerability in Dell products
Select Dell Client Commercial and Consumer platforms are vulnerable to an insufficient verification of data authenticity vulnerability.
local
low complexity
dell CWE-345
5.1