Vulnerabilities > Dell > Smartfabric Storage Software

DATE CVE VULNERABILITY TITLE RISK
2023-10-05 CVE-2023-32485 Unspecified vulnerability in Dell Smartfabric Storage Software 1.0.0
Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability.
network
low complexity
dell
critical
9.8
2023-10-05 CVE-2023-43068 Unspecified vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the restricted shell in SSH.
network
low complexity
dell
8.8
2023-10-05 CVE-2023-43069 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contain(s) an OS Command Injection Vulnerability in the CLI.
local
low complexity
dell CWE-78
7.8
2023-10-05 CVE-2023-43070 Unspecified vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains a Path Traversal Vulnerability in the HTTP interface.
network
low complexity
dell
6.5
2023-10-05 CVE-2023-43071 Unspecified vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI.
network
low complexity
dell
5.4
2023-10-05 CVE-2023-43072 Unspecified vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an improper access control vulnerability in the CLI.
local
low complexity
dell
7.8
2023-10-05 CVE-2023-43073 Unspecified vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an Improper Input Validation vulnerability in RADIUS configuration.
network
low complexity
dell
6.5
2023-10-05 CVE-2023-4401 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0/1.4.0
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of the ‘more’ command.
network
low complexity
dell CWE-78
8.8
2022-08-30 CVE-2022-31232 OS Command Injection vulnerability in Dell Smartfabric Storage Software 1.0.0
SmartFabric storage software version 1.0.0 contains a Command-Injection vulnerability.
network
low complexity
dell CWE-78
critical
9.8