Skip to main content

Vendor archive

dell CVEs

Beta · best-effort

1,591 CVEs tagged to vendor dell100 Critical, 657 High, 741 Medium, 93 Low, 0 Unrated.

CVE-2024-39581

Published Sep 10, 2024

Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability. An unauthenticated attacker with remote access co…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-39580

Published Sep 10, 2024

Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains an Improper Access Control vulnerability. A high privileged attacker with local access could potentially exploit this…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39574

Published Sep 10, 2024

Dell PowerScale InsightIQ, version 5.1, contain an Improper Privilege Management vulnerability. A high privileged attacker with local access could potentially exploit this vulnera…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-42427

Published Sep 10, 2024

Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2024-39585

Published Sep 6, 2024

Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability. A low privileged attacker with remote a…

CVSS 7.9 · High
Vendor/product tagsBeta · best-effort

CVE-2024-38486

Published Sep 6, 2024

Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injectio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-37136

Published Sep 3, 2024

Dell Path to PowerProtect, versions 1.1, 1.2, contains an Exposure of Private Personal Information to an Unauthorized Actor vulnerability. A remote high privileged attacker could…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39579

Published Aug 31, 2024

Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vulnerability. A local high privileged attacker could potentially exploit this vu…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39578

Published Aug 31, 2024

Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-39576

Published Aug 22, 2024

Dell Power Manager (DPM), versions 3.15.0 and prior, contains an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local access could potentially exploi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-22576

Published Aug 21, 2024

Dell Repository Manager version 3.4.2 and earlier, contain a Local Privilege Escalation Vulnerability in Installation module. A local low privileged attacker may potentially explo…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-38305

Published Aug 21, 2024

Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation vulnerability in the installer. A local low-privileged authenticated attacker could pot…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2024-38482

Published Aug 2, 2024

CloudLink, versions 7.1.x and 8.x, contain an Improper check or handling of Exceptional Conditions Vulnerability in Cluster Component. A highly privileged malicious user with remo…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-38490

Published Aug 1, 2024

Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-38489

Published Aug 1, 2024

Dell iDRAC Service Module version 5.3.0.0 and prior contains Out of bound write Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-38481

Published Aug 1, 2024

Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Read Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-28972

Published Aug 1, 2024

Dell InsightIQ, Verion 5.0.0, contains a use of a broken or risky cryptographic algorithm vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerab…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 476-500 of 1,591 CVEsPage 20 of 64