Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-03-02 CVE-2021-21514 Path Traversal vulnerability in Dell Openmanage Server Administrator
Dell EMC OpenManage Server Administrator (OMSA) versions 9.5 and prior contain a path traversal vulnerability.
network
low complexity
dell CWE-22
4.9
2021-03-01 CVE-2021-21515 Cross-site Scripting vulnerability in Dell EMC Sourceone 7.2
Dell EMC SourceOne, versions 7.2SP10 and prior, contain a Stored Cross-Site Scripting vulnerability.
network
low complexity
dell CWE-79
5.4
2021-02-19 CVE-2021-21512 Information Exposure vulnerability in Dell EMC Powerprotect Cyber Recovery 19.7.0.1
Dell EMC PowerProtect Cyber Recovery, version 19.7.0.1, contains an Information Disclosure vulnerability.
local
low complexity
dell CWE-200
6.0
2021-02-09 CVE-2020-26196 Incorrect Permission Assignment for Critical Resource vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue.
local
low complexity
dell CWE-732
5.5
2021-02-09 CVE-2020-26195 Improper Handling of Exceptional Conditions vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.2 – 9.1.0 contain an issue where the OneFS SMB directory auto-create may erroneously create a directory for a user.
network
low complexity
dell CWE-755
5.3
2021-01-08 CVE-2020-26186 Exposure of Resource to Wrong Sphere vulnerability in Dell Inspiron 5675 Firmware
Dell Inspiron 5675 BIOS versions prior to 1.4.1 contain a UEFI BIOS RuntimeServices overwrite vulnerability.
low complexity
dell CWE-668
6.8
2021-01-05 CVE-2020-35170 Cross-site Scripting vulnerability in Dell Powermax OS and Unisphere
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.9, Dell EMC Unisphere for PowerMax versions prior to 9.0.2.16, and Dell EMC PowerMax OS 5978.221.221 and 5978.479.479 contain a Cross-Site Scripting (XSS) vulnerability.
network
low complexity
dell CWE-79
5.4
2021-01-05 CVE-2020-29502 Cleartext Storage of Sensitive Information vulnerability in Dell EMC Powerstore Firmware
Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore X & T environments.
local
low complexity
dell CWE-312
6.7
2021-01-05 CVE-2020-29501 Cleartext Storage of Sensitive Information vulnerability in Dell EMC Powerstore Firmware
Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore X & T environments.
local
low complexity
dell CWE-312
6.7
2021-01-05 CVE-2020-29500 Cleartext Storage of Sensitive Information vulnerability in Dell EMC Powerstore Firmware
Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore T environments.
local
low complexity
dell CWE-312
6.7