Skip to main content

Vendor archive

dell CVEs

Beta · best-effort

1,591 CVEs tagged to vendor dell100 Critical, 657 High, 741 Medium, 93 Low, 0 Unrated.

CVE-2021-36336

Published Dec 21, 2021

Wyse Management Suite 3.3.1 and below versions contain a deserialization vulnerability that could allow an unauthenticated attacker to execute code on the affected system.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-36318

Published Dec 21, 2021

Dell EMC Avamar versions 18.2,19.1,19.2,19.3,19.4 contain a plain-text password storage vulnerability. A high privileged user could potentially exploit this vulnerability, leading…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36316

Published Dec 21, 2021

Dell EMC Avamar Server versions 18.2, 19.1, 19.2, 19.3, and 19.4 contain an improper privilege management vulnerability in AUI. A malicious user with high privileges could potenti…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36330

Published Nov 30, 2021

Dell EMC Streaming Data Platform versions before 1.3 contain an Insufficient Session Expiration Vulnerability. A remote unauthenticated attacker may potentially exploit this vulne…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36329

Published Nov 30, 2021

Dell EMC Streaming Data Platform versions before 1.3 contain an Indirect Object Reference Vulnerability. A remote malicious user may potentially exploit this vulnerability to gain…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36328

Published Nov 30, 2021

Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Injection Vulnerability. A remote malicious user may potentially exploit this vulnerability to execute SQL comma…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36327

Published Nov 30, 2021

Dell EMC Streaming Data Platform versions before 1.3 contain a Server Side Request Forgery Vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerabil…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36326

Published Nov 30, 2021

Dell EMC Streaming Data Platform, versions prior to 1.3 contain an SSL Strip Vulnerability in the User Interface (UI). A remote unauthenticated attacker could potentially exploit…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36335

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain an Improper Input Validation Vulnerability. A remote low privileged attacker, may potentially exploit this vulnerability, lea…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36334

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain a CSV formula Injection Vulnerability. A remote high privileged attacker, may potentially exploit this vulnerability, leading…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36333

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain a Buffer Overflow Vulnerability. A local low privileged attacker, may potentially exploit this vulnerability, leading to an a…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36332

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain a HTML and Javascript Injection Vulnerability. A remote low privileged attacker, may potentially exploit this vulnerability,…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36314

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain an Arbitrary File Creation Vulnerability. A remote unauthenticated attacker, may potentially exploit this vulnerability, lead…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36313

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain an OS command injection Vulnerability. A remote high privileged attacker, may potentially exploit this vulnerability, leading…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-36312

Published Nov 23, 2021

Dell EMC CloudLink 7.1 and all prior versions contain a Hard-coded Password Vulnerability. A remote high privileged attacker, with the knowledge of the hard-coded credentials, may…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-36311

Published Nov 23, 2021

Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability. Any local malicious user with networker user privileges may exploit this vulnerability t…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36300

Published Nov 23, 2021

iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability by sending a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-36299

Published Nov 23, 2021

Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21561

Published Nov 23, 2021

Dell PowerScale OneFS version 8.1.2 contains a sensitive information exposure vulnerability. This would allow a malicious user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOL…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36340

Published Nov 20, 2021

Dell EMC SCG 5.00.00.10 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensitive information…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36322

Published Nov 20, 2021

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain a host header injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerabi…

CVSS 6.1 · Medium

CVE-2021-36321

Published Nov 20, 2021

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an improper input validation vulnerability. A remote unauthenticated attacker may potentially exploit this vuln…

CVSS 7.5 · High

CVE-2021-36320

Published Nov 20, 2021

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an authentication bypass vulnerability. A remote unauthenticated attacker may potentially hijack a session and…

CVSS 7.5 · High
Showing 1,126-1,150 of 1,591 CVEsPage 46 of 64