Skip to main content

Vendor archive

dell CVEs

Beta · best-effort

1,585 CVEs tagged to vendor dell98 Critical, 655 High, 739 Medium, 93 Low, 0 Unrated.

CVE-2024-48015

Published Mar 17, 2025

Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection'…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-22474

Published Mar 17, 2025

Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) a Server-Side Request Forgery (SSRF) vulnerability. A high privileged attacker with r…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-48830

Published Mar 17, 2025

Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection'…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-48013

Published Mar 17, 2025

Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Execution with Unnecessary Privileges vulnerability. A low privileged attacker wit…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-21104

Published Mar 13, 2025

Dell NetWorker, versions prior to 19.11.0.4 and version 19.12, contains an URL Redirection to Untrusted Site ('Open Redirect') Vulnerability in NetWorker Management Console. An un…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-26331

Published Mar 7, 2025

Dell ThinOS 2411 and prior, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local acc…

CVSS 7.8 · High

CVE-2024-51539

Published Feb 25, 2025

The Dell Secure Connect Gateway (SCG) Application and Appliance, versions prior to 5.28, contains a SQL injection vulnerability due to improper neutralization of special elements…

CVSS 2.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-21106

Published Feb 20, 2025

Dell Recover Point for Virtual Machines 6.0.X contains a Weak file system permission vulnerability. A low privileged Local attacker could potentially exploit this vulnerability, l…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21105

Published Feb 20, 2025

Dell RecoverPoint for Virtual Machines 6.0.X contains a command execution vulnerability. A Low privileged malicious user with local access could potentially exploit this vulnerabi…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21103

Published Feb 17, 2025

Dell NetWorker Management Console, version(s) 19.11 through 19.11.0.3 & Versions prior to 19.10.0.7 contain(s) an improper neutralization of server-side vulnerability. An unauthen…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22480

Published Feb 13, 2025

Dell SupportAssist OS Recovery versions prior to 5.5.13.1 contain a symbolic link attack vulnerability. A low-privileged attacker with local access could potentially exploit this…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-29172

Published Feb 12, 2025

Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attacker could potentially exploit this vulnerability, leading to…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-29171

Published Feb 12, 2025

Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vulnerability. A remote attacker could potentially exploit this…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-22399

Published Feb 11, 2025

Dell UCC Edge, version 2.3.0, contains a Blind SSRF on Add Customer SFTP Server vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnera…

CVSS 7.9 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22402

Published Feb 7, 2025

Dell Update Manager Plugin, version(s) 1.5.0 through 1.6.0, contain(s) an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability. A low privil…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-21117

Published Feb 5, 2025

Dell Avamar, version 19.4 or later, contains an access token reuse vulnerability in the AUI. A low privileged local attacker could potentially exploit this vulnerability, leading…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-22475

Published Feb 4, 2025

Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote atta…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-53295

Published Feb 1, 2025

Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability. A local malicious user with low privileges could potenti…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-53296

Published Feb 1, 2025

Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in the RestAPI. A high privileged attacker with remote access co…

CVSS 2.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-51534

Published Feb 1, 2025

Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A local low privileged could potentially exploit this vulnera…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2025-23374

Published Jan 30, 2025

Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high pri…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2025-22394

Published Jan 15, 2025

Dell Display Manager, versions prior to 2.3.2.18, contain a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could pote…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-21101

Published Jan 15, 2025

Dell Display Manager, versions prior to 2.3.2.20, contain a race condition vulnerability. A local malicious user could potentially exploit this vulnerability during installation,…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 376-400 of 1,585 CVEsPage 16 of 64