Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-09-02 CVE-2022-34378 Path Traversal vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.20, 9.2.1.13, 9.3.0.6, and 9.4.0.3, contain a relative path traversal vulnerability.
local
low complexity
dell CWE-22
5.5
2022-08-30 CVE-2022-33935 Cross-site Scripting vulnerability in Dell EMC Data Protection Advisor
Dell EMC Data Protection Advisor versions 19.6 and earlier, contains a Stored Cross Site Scripting, an attacker could potentially exploit this vulnerability, leading to the storage of malicious HTML or JavaScript codes in a trusted application data store.
network
low complexity
dell CWE-79
5.4
2022-08-30 CVE-2022-34368 Improper Handling of Exceptional Conditions vulnerability in Dell EMC Networker
Dell EMC NetWorker 19.2.1.x 19.3.x, 19.4.x, 19.5.x, 19.6.x and 19.7.0.0 contain an Improper Handling of Insufficient Permissions or Privileges vulnerability.
network
low complexity
dell CWE-755
6.5
2022-08-30 CVE-2022-34375 Path Traversal vulnerability in Dell Container Storage Modules
Dell Container Storage Modules 1.2 contains a path traversal vulnerability in goiscsi and gobrick libraries.
network
low complexity
dell CWE-22
6.5
2022-08-22 CVE-2022-31238 Information Exposure vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain a process invoked with sensitive information vulnerability.
local
low complexity
dell CWE-200
5.5
2022-08-22 CVE-2022-32480 Insecure Default Initialization of Resource vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0, up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an insecure default initialization of a resource vulnerability.
network
low complexity
dell CWE-1188
6.5
2022-08-22 CVE-2022-33932 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotected primary channel vulnerability.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-29090 Cleartext Storage of Sensitive Information vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Sensitive Data Exposure vulnerability.
network
low complexity
dell CWE-312
6.5
2022-08-10 CVE-2022-33924 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability with which an attacker with no access to create rules could potentially exploit this vulnerability and create rules.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-33925 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI.
network
low complexity
dell
6.5