Vulnerabilities > Dell > Wyse Management Suite > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-10 CVE-2022-33924 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability with which an attacker with no access to create rules could potentially exploit this vulnerability and create rules.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-33925 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI.
network
low complexity
dell
6.5
2022-08-10 CVE-2022-33926 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an improper access control vulnerability.
network
low complexity
dell
6.5
2022-08-10 CVE-2022-33927 Session Fixation vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability.
network
low complexity
dell CWE-384
6.5
2022-08-10 CVE-2022-33929 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in EndUserSummary page.
network
low complexity
dell CWE-79
6.1
2022-08-10 CVE-2022-33931 Unspecified vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Improper Access control vulnerability in UI.
network
low complexity
dell
5.3
2022-08-10 CVE-2022-34365 Path Traversal vulnerability in Dell Wyse Management Suite
WMS 3.7 contains a Path Traversal Vulnerability in Device API.
network
low complexity
dell CWE-22
6.5
2022-06-24 CVE-2022-29096 Cross-site Scripting vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Reflected Cross-Site Scripting Vulnerability in saveGroupConfigurations page.
network
low complexity
dell CWE-79
5.4
2022-06-24 CVE-2022-29097 Path Traversal vulnerability in Dell Wyse Management Suite
Dell WMS 3.6.1 and below contains a Path Traversal vulnerability in Device API.
network
low complexity
dell CWE-22
4.9
2021-07-15 CVE-2021-21586 Path Traversal vulnerability in Dell Wyse Management Suite
Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability.
network
low complexity
dell CWE-22
6.5