Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-28965 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal enable REST API (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28966 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28967 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal maintenance REST API (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28968 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal email and collection settings REST APIs (if enabled by Admin user from UI).
network
low complexity
dell
5.4
2024-06-13 CVE-2024-28969 Unspecified vulnerability in Dell Secure Connect Gateway 5.18.00.20/5.22.00.18
Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabled by Admin user from UI).
network
low complexity
dell
4.3
2024-06-13 CVE-2024-32856 Unspecified vulnerability in Dell products
Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component.
local
low complexity
dell
6.0
2024-06-12 CVE-2024-0160 Incorrect Authorization vulnerability in Dell products
Dell Client Platform contains an incorrect authorization vulnerability.
low complexity
dell CWE-863
6.8
2024-06-12 CVE-2024-28970 Out-of-bounds Write vulnerability in Dell products
Dell Client BIOS contains an Out-of-bounds Write vulnerability.
local
low complexity
dell CWE-787
4.4
2024-05-01 CVE-2024-28978 Improper Access Control vulnerability in Dell Openmanage Enterprise 3.10/4.0
Dell OpenManage Enterprise, versions 3.10 and 4.0, contains an Improper Access Control vulnerability.
network
low complexity
dell CWE-284
6.5
2024-05-01 CVE-2024-28979 Cross-site Scripting vulnerability in Dell Openmanage Enterprise 3.5/3.6.1/3.8.4
Dell OpenManage Enterprise, versions 4.1.0 and older, contains an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability.
network
low complexity
dell CWE-79
4.8