Skip to main content

Vendor archive

dell CVEs

Beta · best-effort

1,585 CVEs tagged to vendor dell98 Critical, 655 High, 739 Medium, 93 Low, 0 Unrated.

CVE-2021-21526

Published Apr 20, 2021

Dell PowerScale OneFS 8.1.0 - 9.1.0 contains a privilege escalation in SmartLock compliance mode that may allow compadmin to execute arbitrary commands as root.

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-26197

Published Apr 20, 2021

Dell PowerScale OneFS 8.1.0 - 9.1.0 contains an LDAP Provider inability to connect over TLSv1.2 vulnerability. It may make it easier to eavesdrop and decrypt such traffic for a ma…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21545

Published Apr 12, 2021

Dell Peripheral Manager 1.3.1 or greater contains remediation for a local privilege escalation vulnerability that could be potentially exploited to gain arbitrary code execution o…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21533

Published Apr 2, 2021

Wyse Management Suite versions up to 3.2 contains a vulnerability wherein a malicious authenticated user can cause a denial of service in the job status retrieval page, also affec…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-21532

Published Apr 2, 2021

Dell Wyse ThinOS 8.6 MR9 contains remediation for an improper management server validation vulnerability that could be potentially exploited to redirect a client to an attacker-co…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-21529

Published Apr 2, 2021

Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malicious user with low privileges may potentially exploit this…

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-21510

Published Mar 8, 2021

Dell iDRAC8 versions prior to 2.75.100.75 contain a host header injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-21506

Published Mar 8, 2021

PowerScale OneFS 8.1.2,8.2.2 and 9.1.0 contains an improper input sanitization issue in its API handler. An un-authtenticated with ISI_PRIV_SYS_SUPPORT and ISI_PRIV_LOGIN_PAPI pri…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21503

Published Mar 8, 2021

PowerScale OneFS 8.1.2,8.2.2 and 9.1.0 contains an improper input sanitization issue in a command. The Compadmin user could potentially exploit this vulnerability, leading to pote…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21514

Published Mar 2, 2021

Dell EMC OpenManage Server Administrator (OMSA) versions 9.5 and prior contain a path traversal vulnerability. A remote user with admin privileges could potentially exploit this v…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-21513

Published Mar 2, 2021

Dell EMC OpenManage Server Administrator (OMSA) version 9.5 Microsoft Windows installations with Distributed Web Server (DWS) enabled configuration contains an authentication bypa…

CVSS 8.6 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21517

Published Mar 1, 2021

SRS Policy Manager 6.X is affected by an XML External Entity Injection (XXE) vulnerability due to a misconfigured XML parser that processes user-supplied DTD input without suffici…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21515

Published Mar 1, 2021

Dell EMC SourceOne, versions 7.2SP10 and prior, contain a Stored Cross-Site Scripting vulnerability. A remote low privileged attacker may potentially exploit this vulnerability, t…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-21512

Published Feb 19, 2021

Dell EMC PowerProtect Cyber Recovery, version 19.7.0.1, contains an Information Disclosure vulnerability. A locally authenticated high privileged Cyber Recovery user may potential…

CVSS 7.9 · High
Vendor/product tagsBeta · best-effort

CVE-2021-21502

Published Feb 9, 2021

Dell PowerScale OneFS versions 8.1.0 – 9.1.0 contain a "use of SSH key past account expiration" vulnerability. A user on the network with the ISI_PRIV_AUTH_SSH RBAC privilege that…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-26196

Published Feb 9, 2021

Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the BackupAdmin role may potentially exploit this vulnerability…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-26195

Published Feb 9, 2021

Dell EMC PowerScale OneFS versions 8.1.2 – 9.1.0 contain an issue where the OneFS SMB directory auto-create may erroneously create a directory for a user. A remote unauthenticated…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-26194

Published Feb 9, 2021

Dell EMC PowerScale OneFS versions 8.1.2 and 8.2.2 contain an Incorrect Permission Assignment for a Critical Resource vulnerability. This may allow a non-admin user with either IS…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2020-26193

Published Feb 9, 2021

Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain an improper input validation vulnerability. A user with the ISI_PRIV_CLUSTER privilege may exploit this vulnerability, lea…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-26192

Published Feb 9, 2021

Dell EMC PowerScale OneFS versions 8.2.0 - 9.1.0 contain a privilege escalation vulnerability. A non-admin user with either ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH may potent…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-26191

Published Feb 9, 2021

Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain a privilege escalation vulnerability. A user with ISI_PRIV_JOB_ENGINE may use the PermissionRepair job to grant themselves…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1,251-1,275 of 1,585 CVEsPage 51 of 64