Skip to main content

Vendor archive

dell CVEs

Beta · best-effort

1,585 CVEs tagged to vendor dell98 Critical, 655 High, 739 Medium, 93 Low, 0 Unrated.

CVE-2024-47239

Published Jan 8, 2025

Dell PowerScale OneFS versions 8.2.2.x through 9.9.0.0 contain an uncontrolled resource consumption vulnerability. A remote low privileged attacker could potentially exploit this…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-22395

Published Jan 7, 2025

Dell Update Package Framework, versions prior to 22.01.02, contain(s) a Local Privilege Escalation Vulnerability. A local low privileged attacker could potentially exploit this vu…

CVSS 8.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-47475

Published Jan 6, 2025

Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerability. A locally authenticated attacker could potentially e…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-51540

Published Dec 26, 2024

Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS. An authenticated user with bucket or object-level acc…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-52543

Published Dec 25, 2024

Dell NativeEdge, version(s) 2.1.0.0, contain(s) a Creation of Temporary File With Insecure Permissions vulnerability. A high privileged attacker with local access could potentiall…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-52534

Published Dec 25, 2024

Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability. A low privileged attacker with remote access could potentially expl…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-53291

Published Dec 25, 2024

Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Exposure of Sensitive Information Through Metadata vulnerability. An unauthenticated attacker with remote access could potential…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-47978

Published Dec 25, 2024

Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Execution with Unnecessary Privileges vulnerability. A low privileged attacker with local access could potentially exploit this…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-51532

Published Dec 19, 2024

Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability. A low privileged attacker with local access could pot…

CVSS 7.1 · High

CVE-2024-47480

Published Dec 18, 2024

Dell Inventory Collector Client, versions prior to 12.7.0, contains an Improper Link Resolution Before File Access vulnerability. A low-privilege attacker with local access may ex…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-52542

Published Dec 17, 2024

Dell AppSync, version 4.6.0.x, contain a Symbolic Link (Symlink) Following vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability,…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-47984

Published Dec 13, 2024

Dell RecoverPoint for Virtual Machines 6.0.x contains Denial of Service vulnerability. A User with Remote access could potentially exploit this vulnerability, leading to the disru…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-28980

Published Dec 13, 2024

Dell RecoverPoint for VMs, version(s) 6.0.x contain(s) a Use of a Broken or Risky Cryptographic Algorithm vulnerability in the SSH. An unauthenticated attacker with remote access…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-24902

Published Dec 13, 2024

Dell RecoverPoint for Virtual Machines 6.0.x contains an Improper access control vulnerability. A low privileged local attacker could potentially exploit this vulnerability leadin…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-48007

Published Dec 13, 2024

Dell RecoverPoint for Virtual Machines 6.0.x contains use of hard-coded credentials vulnerability. A Remote unauthenticated attacker could potentially exploit this vulnerability b…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-38488

Published Dec 13, 2024

Dell RecoverPoint for Virtual Machines 6.0.x contains a vulnerability. An improper Restriction of Excessive Authentication vulnerability where a Network attacker could potentially…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-53290

Published Dec 11, 2024

Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with local acce…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2024-53289

Published Dec 11, 2024

Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vul…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 401-425 of 1,585 CVEsPage 17 of 64