Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Recoverpoint For Virtual Machines CRITICAL 9.8
CVE-2024-48007

Dell RecoverPoint for Virtual Machines 6.0.x contains use of hard-coded credentials vulnerability. A Remote unauthenticated attacker could potentiall…

Mitigation only
Fix from $2,300 2024-12-13
Recoverpoint For Virtual Machines MEDIUM 6.5
CVE-2024-48008

Dell RecoverPoint for Virtual Machines 6.0.x contains a OS Command Injection vulnerability. An Low privileged remote attacker could potentially explo…

Mitigation only
Fix from $1,600 2024-12-13
Recoverpoint For Virtual Machines CRITICAL 9.8
CVE-2024-38488

Dell RecoverPoint for Virtual Machines 6.0.x contains a vulnerability. An improper Restriction of Excessive Authentication vulnerability where a Netw…

Mitigation only
Fix from $2,300 2024-12-13
Recoverpoint For Virtual Machines HIGH 8.8
CVE-2024-22461

Dell RecoverPoint for Virtual Machines 6.0.x contains an OS Command injection vulnerability. A low privileged remote attacker could potentially explo…

Mitigation only
Fix from $1,950 2024-12-13
Embedded Box Pc 3000 Firmware MEDIUM 6.7
CVE-2024-47238

Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with l…

Fix: 1.19.0 / 1.25.0+
Fix from $1,600 2024-12-12
Thinos HIGH 8.4
CVE-2024-53290

Dell ThinOS version 2408 contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenti…

Mitigation only
Fix from $1,950 2024-12-11
Thinos HIGH 7.0
CVE-2024-53289

Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access coul…

Mitigation only
Fix from $1,950 2024-12-11
Vxrail Hyperconverged Infrastructure MEDIUM 6.7
CVE-2024-53292

Dell VxVerify, versions prior to x.40.405, contain a Plain-text Password Storage Vulnerability in the shell wrapper. A local high privileged attacker…

Mitigation only
Fix from $1,600 2024-12-11
Dock Hd22q Firmware Update Utility MEDIUM 6.7
CVE-2024-52537

Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attacker with local access could p…

Fix: 1.00.23 / 1.00.28+
Fix from $1,600 2024-12-11
Avamar Server CRITICAL 9.8
CVE-2024-47484

Dell Avamar, versions prior to 19.12 with patch 338905, excluding 19.10 and 19.10SP1 with patch 338869, contains an Improper Neutralization of Specia…

Mitigation only
Fix from $2,300 2024-12-10
Avamar Server HIGH 8.8
CVE-2024-47977

Dell Avamar, versions prior to 19.12 with patch 338905, excluding 19.10 and 19.10SP1 with patch 338869, contains an Improper Neutralization of Specia…

Mitigation only
Fix from $1,950 2024-12-10
Avamar Server HIGH 8.8
CVE-2024-52538

Dell Avamar, versions prior to 19.12 with patch 338905, excluding 19.10 and 19.10SP1 with patch 338869, contains an Improper Neutralization of Specia…

Mitigation only
Fix from $1,950 2024-12-10
Data Lakehouse CRITICAL 9.8
CVE-2024-37143

Dell PowerFlex appliance versions prior to IC 46.381.00 and IC 46.376.00, Dell PowerFlex rack versions prior to RCM 3.8.1.0 (for RCM 3.8.x train) and…

Fix: 1.2.0.0 / 3.7.6.0+
Fix from $2,300 2024-12-10
Data Lakehouse MEDIUM 6.7
CVE-2024-37144

Dell PowerFlex appliance versions prior to IC 46.381.00 and IC 46.376.00, Dell PowerFlex rack versions prior to RCM 3.8.1.0 (for RCM 3.8.x train) and…

Fix: 1.2.0.0 / 3.7.6.0+
Fix from $1,600 2024-12-10
Openmanage Server Administrator HIGH 8.8
CVE-2024-45760

Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper access control vulnerability. A remote low privileged user co…

Fix: 11.1.0.0+
Fix from $1,950 2024-12-09
Openmanage Server Administrator HIGH 8.1
CVE-2024-45761

Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper input validation vulnerability. A remote low-privileged malic…

Fix: 11.1.0.0+
Fix from $1,950 2024-12-09
Power Manager HIGH 7.8
CVE-2024-49600

Dell Power Manager (DPM), versions prior to 3.17, contain an improper access control vulnerability. A low privileged attacker with local access could…

Fix: 3.17+
Fix from $1,950 2024-12-09
Powerscale Onefs MEDIUM 6.5
CVE-2024-49602

Dell PowerScale OneFS Versions 8.2.2.x through 9.8.0.x contain an improper resource unlocking vulnerability. A remote low privileged attacker could p…

Fix: 9.4.0.20 / 9.5.1.1+
Fix from $1,600 2024-12-09
Powerscale Onefs MEDIUM 6.5
CVE-2024-49603

Dell PowerScale OneFS Versions 8.2.2.x through 9.9.0.x contain an incorrect specified argument vulnerability. A remote low privileged legitimate user…

Fix: 9.7.1.3 / 9.9.0.1+
Fix from $1,600 2024-12-09
Powerscale Onefs MEDIUM 6.5
CVE-2024-42426

Dell PowerScale OneFS Versions 9.5.0.x through 9.8.0.x contain an uncontrolled resource consumption vulnerability. A low privilege remote attacker co…

Fix: 9.7.1.3+
Fix from $1,600 2024-12-09
Networker HIGH 7.5
CVE-2024-42422

Dell NetWorker, version(s) 19.10, contain(s) an Authorization Bypass Through User-Controlled Key vulnerability. An unauthenticated attacker with remo…

Fix: 19.10.0.6 / 19.11.0.3+
Fix from $1,950 2024-12-03
Networker Management Console HIGH 7.8
CVE-2024-47476

Dell NetWorker Management Console, version(s) 19.11, contain(s) an Improper Verification of Cryptographic Signature vulnerability. An unauthenticated…

Mitigation only
Fix from $1,950 2024-12-03
Wyse Management Suite HIGH 7.2
CVE-2024-49597

Dell Wyse Management Suite, versions WMS 4.4 and prior, contain an Improper Restriction of Excessive Authentication Attempts vulnerability. A high pr…

Fix: after 4.4
Fix from $1,950 2024-11-26
Wyse Management Suite MEDIUM 6.5
CVE-2024-49596

Dell Wyse Management Suite, version WMS 4.4 and prior, contain a Missing Authorization vulnerability. A high privileged attacker with remote access c…

Fix: after 4.4
Fix from $1,600 2024-11-26
Smartfabric Os10 HIGH 7.8
CVE-2024-49557

Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Neutralization of Special Elements used in …

Fix: 10.5.4.13 / 10.5.5.12+
Fix from $1,950 2024-11-12
Smartfabric Os10 HIGH 7.8
CVE-2024-49558

Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Privilege Management vulnerability. A low p…

Fix: 10.5.4.13 / 10.5.5.12+
Fix from $1,950 2024-11-12
Smartfabric Os10 HIGH 7.8
CVE-2024-49560

Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a command injection vulnerability. A low privileged att…

Fix: 10.5.4.13 / 10.5.5.12+
Fix from $1,950 2024-11-12
Smartfabric Os10 HIGH 7.8
CVE-2024-48837

Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Execution with Unnecessary Privileges vulnerability.…

Fix: 10.5.4.13 / 10.5.5.12+
Fix from $1,950 2024-11-12
Enterprise Sonic Distribution HIGH 7.2
CVE-2024-45763

Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injec…

Fix: 4.1.6 / 4.2.2+
Fix from $1,950 2024-11-08
Enterprise Sonic Distribution CRITICAL 9.8
CVE-2024-45764

Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) a Missing Critical Step in Authentication vulnerability. An unauthenticated attacker wi…

Fix: 4.1.6 / 4.2.2+
Fix from $2,300 2024-11-08