Vulnerabilities > Dell > Unisphere FOR Powermax Virtual Appliance

DATE CVE VULNERABILITY TITLE RISK
2023-12-14 CVE-2023-48671 Unspecified vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability.
network
low complexity
dell
7.5
2023-12-14 CVE-2023-48660 Path Traversal vulnerability in Dell products
Dell vApp Manger, versions prior to 9.2.4.x contain an arbitrary file read vulnerability.
network
low complexity
dell CWE-22
7.5
2023-12-14 CVE-2023-48661 Files or Directories Accessible to External Parties vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain an arbitrary file read vulnerability.
network
low complexity
dell CWE-552
4.9
2023-12-14 CVE-2023-48662 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48663 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48664 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48665 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-02-13 CVE-2022-34397 Unspecified vulnerability in Dell products
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 10.0.0.5 and below contains an authorization bypass vulnerability, allowing users to perform actions in which they are not authorized.
low complexity
dell
5.7
2023-02-11 CVE-2022-45104 OS Command Injection vulnerability in Dell products
Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain a command execution vulnerability.
network
low complexity
dell CWE-78
8.8
2022-01-21 CVE-2021-36338 Reliance on Cookies without Validation and Integrity Checking vulnerability in Dell products
Unisphere for PowerMax versions prior to 9.2.2.2 contains a privilege escalation vulnerability.
low complexity
dell CWE-565
8.0