Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-04-12 CVE-2022-22560 Use of Hard-coded Credentials vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials.
local
low complexity
dell CWE-798
5.5
2022-04-12 CVE-2022-23159 Memory Leak vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability.
network
low complexity
dell CWE-401
6.5
2022-04-12 CVE-2022-23160 Improper Privilege Management vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.0-9.3.0, contains an Improper Handling of Insufficient Permissions vulnerability.
network
low complexity
dell CWE-269
4.3
2022-04-12 CVE-2022-23163 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2,x, 9.1.0.x, 9.2.1.x, and 9.3.0.x contain a denial of service vulnerability.
local
low complexity
dell CWE-668
5.5
2022-04-08 CVE-2021-36290 Improper Privilege Management vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability.
local
low complexity
dell CWE-269
6.7
2022-04-08 CVE-2021-36293 Improper Privilege Management vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability.
local
low complexity
dell CWE-269
6.7
2022-04-08 CVE-2022-22563 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd.
local
low complexity
dell
4.4
2022-04-08 CVE-2022-26855 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
5.5
2022-04-01 CVE-2022-23156 Improper Authentication vulnerability in Dell Wyse Device Agent 14.5.4.1
Wyse Device Agent version 14.6.1.4 and below contain an Improper Authentication vulnerability.
local
low complexity
dell CWE-287
6.7
2022-04-01 CVE-2022-23157 Information Exposure vulnerability in Dell Wyse Device Agent 14.5.4.1
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability.
local
low complexity
dell CWE-200
4.4