Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2016-02-08 CVE-2016-2268 Cryptographic Issues vulnerability in Dell Secureworks 2.0.6
Dell SecureWorks app before 2.1 for iOS does not validate SSL certificates, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
high complexity
dell CWE-310
6.8
2015-08-01 CVE-2015-2890 Unspecified vulnerability in Dell Bios
The BIOS implementation on Dell Latitude, OptiPlex, Precision Mobile Workstation, and Precision Workstation Client Solutions (CS) devices with model-dependent firmware before A21 does not enforce a BIOS_CNTL locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging console access, a similar issue to CVE-2015-3692.
local
low complexity
dell
6.0