← Back

Dell

dell

1,518 CVEs • 3,654 products

Products (3,654)

Click to collapse
Toggle

CVEs (1,518)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 10, 2023
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user could potentially exploit this vulnerability, leading to system takeover. This impacts compliance mode...Show more
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user could potentially exploit this vulnerability, leading to system takeover. This impacts compliance mode clusters. Show less
1Dell
1Powerpath Management Appliance
Nov 21, 2024
Feb 10, 2023
N/A· v4
2.7 LOW· v3
N/A· v2
PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerability. An Authenticated admin user can able to exploit the issue and view sensitive information stored...Show more
PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerability. An Authenticated admin user can able to exploit the issue and view sensitive information stored in the logs. Show less
1Dell
1Command | Intel Vpro Out Of Band
Nov 21, 2024
Feb 7, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability. A locally authenticated malicious users could potentially exploit this vulnerability in order to write arbit...Show more
Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability. A locally authenticated malicious users could potentially exploit this vulnerability in order to write arbitrary files to the system. Show less
1Dell
1Emc Networker
Nov 21, 2024
Feb 3, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsrexecd) irrespective of any auth used.
1Dell
1Enterprise Sonic Distribution
Nov 21, 2024
Feb 2, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component. An unauthenticated remote attacker could potentially exploit this vulnerab...Show more
Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to uncontrolled resource consumption by creating permanent home directories for unauthenticated users. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog. A low privileges user could potentially exploit this vulnerability, leading to information discl...Show more
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog. A low privileges user could potentially exploit this vulnerability, leading to information disclosure and escalation of privileges. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
8.1 HIGH· v3
N/A· v2
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module. A low-privileged user with permission to read logs on the cluster could p...Show more
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module. A low-privileged user with permission to read logs on the cluster could potentially exploit this vulnerability, leading to Information disclosure and denial of service. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool. A low privileged local attacker could potentially exploit this vulnerability, leading to sensi...Show more
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool. A low privileged local attacker could potentially exploit this vulnerability, leading to sensitive information disclosure. Show less
1Dell
1Emc Data Domain Os
Nov 21, 2024
Feb 1, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on...Show more
Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api. A low privilege local attacker could potentially exploit this vulnerability, leadin...Show more
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api. A low privilege local attacker could potentially exploit this vulnerability, leading to system takeover. Show less
1Dell
1Vxrail Manager
Nov 21, 2024
Feb 1, 2023
N/A· v4
6.7 MEDIUM· v3
N/A· v2
Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the c...Show more
Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the container's underlying OS. Exploitation may lead to a system take over by an attacker. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Dell PowerScale OneFS 8.2.x, 9.0.0.x - 9.4.0.x, contain an insufficient resource pool vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.
1Dell
3Dp4400 Firmware
Dp5900 FirmwareEmc Data Protection Central
Nov 21, 2024
Feb 1, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Hos...Show more
Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by injecting arbitrary \u2018Host\u2019 header values to poison a web cache or trigger redirections. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contains an Improper Certificate Validation vulnerability. An remote unauthenticated attacker could potentially exploit this vulnerability, leading to a full compromise of th...Show more
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contains an Improper Certificate Validation vulnerability. An remote unauthenticated attacker could potentially exploit this vulnerability, leading to a full compromise of the system. Show less
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Dell PowerScale OneFS, versions 8.2.x-9.4.x, contain a weak encoding for a NDMP password. A malicious and privileged local attacker could potentially exploit this vulnerability, leading to a full system compromise
1Dell
1Emc Powerscale Onefs
Nov 21, 2024
Feb 1, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Dell PowerScale OneFS, 9.0.0.x-9.4.0.x, contain a cleartext storage of sensitive information vulnerability in S3 component. An authenticated local attacker could potentially exploit this vulnerability, leading to inform...Show more
Dell PowerScale OneFS, 9.0.0.x-9.4.0.x, contain a cleartext storage of sensitive information vulnerability in S3 component. An authenticated local attacker could potentially exploit this vulnerability, leading to information disclosure. Show less
1Dell
83Alienware M15 R6 Firmware
Alienware M15 R7 FirmwareAlienware M15 Ryzen Edition R5 Firmware+80 more
Nov 21, 2024
Feb 1, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using an SMI to send larger than expected input to a parameter to gain arbit...Show more
Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using an SMI to send larger than expected input to a parameter to gain arbitrary code execution in SMRAM. Show less
1Dell
239Alienware Area 51m R1 Firmware
Alienware Area 51m R2 FirmwareAlienware Aurora R10 Firmware+236 more
Dec 19, 2024
Feb 1, 2023
N/A· v4
7.0 HIGH· v3
N/A· v2
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain ar...Show more
Dell BIOS contains a Time-of-check Time-of-use vulnerability. A local authenticated malicious user could\u00a0potentially exploit this vulnerability by using a specifically timed DMA transaction during an SMI to gain arbitrary code execution on the system. Show less
1Dell
1Openmanage Server Administrator
Nov 21, 2024
Feb 1, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Dell OpenManage Server Administrator (OMSA) version 10.3.0.0 and earlier contains a DLL Injection Vulnerability. A local low privileged authenticated attacker could potentially exploit this vulnerability, leading to the...Show more
Dell OpenManage Server Administrator (OMSA) version 10.3.0.0 and earlier contains a DLL Injection Vulnerability. A local low privileged authenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary executable on the operating system with elevated privileges. Exploitation may lead to a complete system compromise. Show less
1Dell
189Alienware M15 R6 Firmware
Alienware M15 R7 FirmwareChengming 3900 Firmware+186 more
Nov 21, 2024
Feb 1, 2023
N/A· v4
5.1 MEDIUM· v3
N/A· v2
Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable.