Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-08-03 CVE-2021-21581 Cross-site Scripting vulnerability in Dell EMC Idrac9 Firmware
Dell EMC iDRAC9 versions prior to 5.00.00.00 contain a cross-site scripting vulnerability.
network
low complexity
dell CWE-79
6.1
2021-08-03 CVE-2021-21562 Untrusted Search Path vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS contains an untrusted search path vulnerability.
local
low complexity
dell CWE-426
4.4
2021-08-03 CVE-2021-21563 Improper Check for Unusual or Exceptional Conditions vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.2-9.1.0.x contain an Improper Check for Unusual or Exceptional Conditions in its auditing component.This can lead to an authenticated user with low-privileges to trigger a denial of service event.
network
low complexity
dell CWE-754
6.5
2021-08-03 CVE-2021-21565 Excessive Iteration vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 9.1.0.3 and earlier contain a denial of service vulnerability.
network
low complexity
dell CWE-834
5.3
2021-07-29 CVE-2020-5329 Open Redirect vulnerability in Dell EMC Avamar Server 7.3.1/7.4.1
Dell EMC Avamar Server contains an open redirect vulnerability.
network
low complexity
dell CWE-601
6.1
2021-07-29 CVE-2021-21546 Information Exposure Through Log Files vulnerability in Dell EMC Networker
Dell EMC NetWorker versions 18.x,19.x prior to 19.3.0.4 and 19.4.0.0 contain an Information Disclosure in Log Files vulnerability.
local
low complexity
dell CWE-532
5.5
2021-07-22 CVE-2020-5370 Path Traversal vulnerability in Dell EMC Openmanage Enterprise
Dell EMC OpenManage Enterprise (OME) versions prior to 3.4 contain an arbitrary file overwrite vulnerability.
network
low complexity
dell CWE-22
6.8
2021-07-19 CVE-2020-29499 OS Command Injection vulnerability in Dell EMC Powerstore
Dell EMC PowerStore versions prior to 1.0.3.0.5.006 contain an OS Command Injection vulnerability in PowerStore X environment .
local
low complexity
dell CWE-78
6.7
2021-07-19 CVE-2020-29503 Incorrect Default Permissions vulnerability in Dell EMC Powerstore
Dell EMC PowerStore versions prior to 1.0.3.0.5.xxx contain a file permission Vulnerability.
local
low complexity
dell CWE-276
4.4
2021-07-15 CVE-2021-21586 Path Traversal vulnerability in Dell Wyse Management Suite
Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability.
network
low complexity
dell CWE-22
6.5