← Back

Dell

dell

1,518 CVEs • 3,654 products

Products (3,654)

Click to collapse
Toggle

CVEs (1,518)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Dell
1Wyse Device Agent
Nov 21, 2024
Apr 1, 2022
N/A· v4
4.4 MEDIUM· v3
2.1 LOW· v2
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability. A local authenticated user with standard privilege could potentially exploit this vulnerability and provide incorrect port inf...Show more
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability. A local authenticated user with standard privilege could potentially exploit this vulnerability and provide incorrect port information and get connected to valid WMS serverShow less
1Dell
1Wyse Device Agent
Nov 21, 2024
Apr 1, 2022
N/A· v4
4.4 MEDIUM· v3
2.1 LOW· v2
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability. A authenticated malicious user could potentially exploit this vulnerability in order to view sensitive information from the WM...Show more
Wyse Device Agent version 14.6.1.4 and below contain a sensitive data exposure vulnerability. A authenticated malicious user could potentially exploit this vulnerability in order to view sensitive information from the WMS Server.Show less
1Dell
1Wyse Device Agent
Nov 21, 2024
Apr 1, 2022
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
Wyse Device Agent version 14.6.1.4 and below contain an Improper Authentication vulnerability. A malicious user could potentially exploit this vulnerability by providing invalid input in order to obtain a connection to W...Show more
Wyse Device Agent version 14.6.1.4 and below contain an Improper Authentication vulnerability. A malicious user could potentially exploit this vulnerability by providing invalid input in order to obtain a connection to WMS server.Show less
1Dell
1Wyse Management Suite
Nov 21, 2024
Apr 1, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Dell Wyse Management Suite versions 2.0 through 3.5.2 contain an unrestricted file upload vulnerability. A malicious user with admin privileges can exploit this vulnerability in order to execute arbitrary code on the sys...Show more
Dell Wyse Management Suite versions 2.0 through 3.5.2 contain an unrestricted file upload vulnerability. A malicious user with admin privileges can exploit this vulnerability in order to execute arbitrary code on the system.Show less
1Dell
46Alienware 13 R3 Firmware
Alienware 15 R3 FirmwareAlienware 15 R4 Firmware+43 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
1Dell
46Alienware 13 R3 Firmware
Alienware 15 R3 FirmwareAlienware 15 R4 Firmware+43 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
1Dell
46Alienware 13 R3 Firmware
Alienware 15 R3 FirmwareAlienware 15 R4 Firmware+43 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
1Dell
46Alienware 13 R3 Firmware
Alienware 15 R3 FirmwareAlienware 15 R4 Firmware+43 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
1Dell
46Alienware 13 R3 Firmware
Alienware 15 R3 FirmwareAlienware 15 R4 Firmware+43 more
Nov 21, 2024
Mar 11, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution during SMM.
1Dell
1Enterprise Storage Analytics
Nov 21, 2024
Mar 4, 2022
N/A· v4
6.0 MEDIUM· v3
3.6 LOW· v2
Dell EMC Enterprise Storage Analytics for vRealize Operations, versions 4.0.1 to 6.2.1, contain a Plain-text password storage vulnerability. A local high privileged malicious user may potentially exploit this vulnerabili...Show more
Dell EMC Enterprise Storage Analytics for vRealize Operations, versions 4.0.1 to 6.2.1, contain a Plain-text password storage vulnerability. A local high privileged malicious user may potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.Show less
1Dell
1Bsafe Ssl J
Nov 21, 2024
Feb 23, 2022
N/A· v4
7.5 HIGH· v3
7.5 HIGH· v2
Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users to compromise the affected system. Only customers with active BSAFE maintenance contracts can recei...Show more
Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users to compromise the affected system. Only customers with active BSAFE maintenance contracts can receive details about this vulnerability. Public disclosure of the vulnerability details will be shared at a later date.Show less
1Dell
214Alienware Area 51m R1 Firmware
Alienware Area 51m R2 FirmwareAlienware M15 R3 Firmware+211 more
Nov 21, 2024
Feb 9, 2022
N/A· v4
5.1 MEDIUM· v3
3.6 LOW· v2
Select Dell Client Commercial and Consumer platforms are vulnerable to an insufficient verification of data authenticity vulnerability. An authenticated malicious user may exploit this vulnerability in order to install m...Show more
Select Dell Client Commercial and Consumer platforms are vulnerable to an insufficient verification of data authenticity vulnerability. An authenticated malicious user may exploit this vulnerability in order to install modified BIOS firmware.Show less
1Dell
214Alienware Area 51m R1 Firmware
Alienware Area 51m R2 FirmwareAlienware M15 R3 Firmware+211 more
Nov 21, 2024
Feb 9, 2022
N/A· v4
7.2 HIGH· v3
7.2 HIGH· v2
Select Dell Client Commercial and Consumer platforms contain a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in...Show more
Select Dell Client Commercial and Consumer platforms contain a pre-boot direct memory access (DMA) vulnerability. An authenticated attacker with physical access to the system may potentially exploit this vulnerability in order to execute arbitrary code on the device.Show less
1Dell
1Emc Integrated System For Microsoft Azure Stack Hub Firmware
Nov 21, 2024
Feb 9, 2022
N/A· v4
9.9 CRITICAL· v3
9.0 HIGH· v2
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability. A remote malicious user with standard level JEA credentials may potentially exploit this vulnerability t...Show more
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability. A remote malicious user with standard level JEA credentials may potentially exploit this vulnerability to elevate privileges and take over the system.Show less
1Dell
1Integrated Dell Remote Access Controller 9 Firmware
Nov 21, 2024
Jan 25, 2022
N/A· v4
8.1 HIGH· v3
5.5 MEDIUM· v2
iDRAC9 versions prior to 5.00.20.00 contain an input injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial...Show more
iDRAC9 versions prior to 5.00.20.00 contain an input injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure or denial of service by supplying specially crafted input data to iDRAC.Show less
1Dell
2Integrated Dell Remote Access Controller 8 Firmware
Integrated Dell Remote Access Controller 9 Firmware
Nov 21, 2024
Jan 25, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
iDRAC9 versions prior to 5.00.20.00 and iDRAC8 versions prior to 2.82.82.82 contain a stack-based buffer overflow vulnerability. An authenticated remote attacker with high privileges could potentially exploit this vulner...Show more
iDRAC9 versions prior to 5.00.20.00 and iDRAC8 versions prior to 2.82.82.82 contain a stack-based buffer overflow vulnerability. An authenticated remote attacker with high privileges could potentially exploit this vulnerability to control process execution and gain access to the iDRAC operating system.Show less
1Dell
1Integrated Dell Remote Access Controller 8 Firmware
Nov 21, 2024
Jan 25, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
Dell iDRAC 8 prior to version 2.82.82.82 contain a denial of service vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to deny access to the iDRAC webserver.
1Dell
1Emc Unity Operating Environment
Nov 21, 2024
Jan 25, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the syste...Show more
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.Show less
1Dell
1Emc Unity Operating Environment
Nov 21, 2024
Jan 25, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the syste...Show more
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.Show less
1Dell
1Emc Unity Operating Environment
Nov 21, 2024
Jan 25, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability. A remote unauthenticated attacker may exploit this vulnerability by forging a cookie to login as any user.