Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-33924 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability with which an attacker with no access to create rules could potentially exploit this vulnerability and create rules.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-33925 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI.
network
low complexity
dell
6.5
2022-08-10 CVE-2022-33926 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an improper access control vulnerability.
network
low complexity
dell
6.5
2022-08-10 CVE-2022-33927 Session Fixation vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability.
network
low complexity
dell CWE-384
6.5
2022-08-10 CVE-2022-33929 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in EndUserSummary page.
network
low complexity
dell CWE-79
6.1
2022-08-10 CVE-2022-33931 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-34365 Path Traversal vulnerability in Dell Wyse Management Suite
WMS 3.7 contains a Path Traversal Vulnerability in Device API.
network
low complexity
dell CWE-22
6.5
2022-08-09 CVE-2022-29083 Improper Authentication vulnerability in Dell products
Prior Dell BIOS versions contain an Improper Authentication vulnerability.
low complexity
dell CWE-287
6.8
2022-07-21 CVE-2022-22555 OS Command Injection vulnerability in Dell products
Dell EMC PowerStore, contains an OS command injection Vulnerability.
local
low complexity
dell CWE-78
6.7
2022-06-28 CVE-2022-31229 Information Exposure Through an Error Message vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS, 8.2.x through 9.3.0.x, contain an error message with sensitive information.
network
low complexity
dell CWE-209
4.9