Vulnerabilities > Dell > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-02-08 CVE-2024-22464 Information Exposure Through Log Files vulnerability in Dell EMC Appsync
Dell EMC AppSync, versions from 4.2.0.0 to 4.6.0.0 including all Service Pack releases, contain an exposure of sensitive information vulnerability in AppSync server logs.
network
low complexity
dell CWE-532
6.8
2024-02-06 CVE-2023-28063 Incorrect Conversion between Numeric Types vulnerability in Dell products
Dell BIOS contains a Signed to Unsigned Conversion Error vulnerability.
local
low complexity
dell CWE-681
4.4
2024-02-06 CVE-2023-32474 Link Following vulnerability in Dell Display Manager 2.0.0/2.1.0/2.1.1
Dell Display Manager application, version 2.1.1.17 and prior, contain an insecure operation on windows junction/mount point.
local
low complexity
dell CWE-59
6.6
2024-02-01 CVE-2024-22430 Incorrect Default Permissions vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS versions 8.2.x through 9.6.0.x contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
5.5
2024-01-25 CVE-2024-22432 Insufficiently Protected Credentials vulnerability in Dell Networker
Networker 19.9 and all prior versions contains a Plain-text Password stored in temporary config file during backup duration in NMDA MySQL Database backups.
local
low complexity
dell CWE-522
6.5
2024-01-24 CVE-2024-22229 Improper Encoding or Escaping of Output vulnerability in Dell products
Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by an authenticated attacker.
network
low complexity
dell CWE-116
4.3
2023-12-22 CVE-2023-39251 Unspecified vulnerability in Dell products
Dell BIOS contains an Improper Input Validation vulnerability.
local
low complexity
dell
6.7
2023-12-22 CVE-2023-43088 Unspecified vulnerability in Dell Precision 7865 Tower Firmware
Dell Client BIOS contains a pre-boot direct memory access (DMA) vulnerability.
low complexity
dell
6.8
2023-12-18 CVE-2023-28053 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Networker
Dell NetWorker Virtual Edition versions 19.8 and below contain the use of deprecated cryptographic algorithms in the SSH component.
network
low complexity
dell CWE-327
5.3
2023-12-14 CVE-2023-44278 Path Traversal vulnerability in Dell products
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain a path traversal vulnerability.
local
low complexity
dell CWE-22
6.7