Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Enterprise Sonic Distribution HIGH 7.2
CVE-2024-45765

Dell Enterprise SONiC OS, version(s) 4.1.x, 4.2.x, contain(s) an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injec…

Fix: 4.1.6 / 4.2.2+
Fix from $1,950 2024-11-08
Data Domain Operating System MEDIUM 6.5
CVE-2024-48011

Dell PowerProtect DD, versions prior to 7.7.5.50, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. A low privile…

Fix: 7.7.5.50+
Fix from $1,600 2024-11-08
Data Domain Operating System HIGH 7.3
CVE-2024-45759

Dell PowerProtect Data Domain, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an escalation of privilege vulnerability. A lo…

Fix: 7.7.5.50 / 7.10.1.40+
Fix from $1,950 2024-11-08
Data Domain Operating System HIGH 7.2
CVE-2024-48010

Dell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability. A remote high privileg…

Fix: 7.7.5.50 / 7.10.1.40+
Fix from $1,950 2024-11-08
Data Lakehouse MEDIUM 6.5
CVE-2024-47481

Dell Data Lakehouse, version(s) 1.0.0.0, 1.1.0., contain(s) an Improper Access Control vulnerability. An unauthenticated attacker with adjacent netwo…

Mitigation only
Fix from $1,600 2024-10-25
Data Lakehouse MEDIUM 5.5
CVE-2024-47483

Dell Data Lakehouse, version(s) 1.0.0.0 and 1.1.0.0, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection…

Mitigation only
Fix from $1,600 2024-10-25
Secure Connect Gateway HIGH 8.8
CVE-2024-48016

Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability. A …

Mitigation only
Fix from $1,950 2024-10-18
Secure Connect Gateway HIGH 8.1
CVE-2024-47241

Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.24, contains an Improper Certificate Validation vulnerability. A low privileged a…

Mitigation only
Fix from $1,950 2024-10-18
Secure Connect Gateway MEDIUM 6.3
CVE-2024-47240

Dell Secure Connect Gateway (SCG) 5.24 contains an Incorrect Default Permissions vulnerability. A local attacker with low privileges can access the f…

No fix yet
Fix from $1,600 2024-10-18
Openmanage Enterprise HIGH 8.8
CVE-2024-45766

Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code Injection') vulnerability. A lo…

Fix: 4.2.0+
Fix from $1,950 2024-10-17
Openmanage Enterprise MEDIUM 6.5
CVE-2024-45767

Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Inje…

Fix: 4.2.0+
Fix from $1,600 2024-10-17
Smartfabric Os10 HIGH 8.8
CVE-2024-39577

Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contains an Improper Neutralization of Special Elements used in a Co…

Fix: 10.5.3.11 / 10.5.4.12+
Fix from $1,950 2024-09-26
Smartfabric Os10 HIGH 7.5
CVE-2024-37125

Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x, 10.5.4.x,10.5.3.x, contains an Uncontrolled Resource Consumption vulnerability. A remote…

Fix: 10.5.3.11 / 10.5.4.12+
Fix from $1,950 2024-09-26
Insightiq CRITICAL 9.8
CVE-2024-39583

Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a Use of a Broken or Risky Cryptographic Algorithm vulnerability. An unauthenticated at…

Fix: 5.1.1+
Fix from $2,300 2024-09-10
Precision 7920 Firmware MEDIUM 5.5
CVE-2024-42425

Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer vulnerability. A low privileg…

Fix: 2.22.1+
Fix from $1,600 2024-09-10
Insightiq CRITICAL 9.8
CVE-2024-39581

Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability. An unauthenticated …

Fix: 5.1.1+
Fix from $2,300 2024-09-10
Insightiq MEDIUM 6.7
CVE-2024-39580

Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains an Improper Access Control vulnerability. A high privileged attacker with local access …

Fix: 5.1.1+
Fix from $1,600 2024-09-10
Wyse Thinos HIGH 7.6
CVE-2024-42427

Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An…

Mitigation only
Fix from $1,950 2024-09-10
Precision 7920 Rack Firmware MEDIUM 6.0
CVE-2024-42424

Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A high privileged attacker with lo…

Fix: 2.22.1+
Fix from $1,600 2024-09-10
Smartfabric Os10 HIGH 8.8
CVE-2024-38486

Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s) an Improper Neutralization of Special Elements used i…

Fix: 10.5.6.4+
Fix from $1,950 2024-09-06
Smartfabric Os10 HIGH 8.1
CVE-2024-39585

Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability. A low pri…

Fix: 10.5.6.4+
Fix from $1,950 2024-09-06
Powerscale Onefs MEDIUM 6.7
CVE-2024-39579

Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vulnerability. A local high privileged attacker cou…

Fix: 9.7.1.2+
Fix from $1,600 2024-08-31
Powerscale Onefs MEDIUM 6.3
CVE-2024-39578

Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attac…

Fix: 9.7.1.2+
Fix from $1,600 2024-08-31
Emc Xc Core Xcxr2 Firmware MEDIUM 6.5
CVE-2024-38304

Dell PowerEdge Platform, 14G Intel BIOS version(s) prior to 2.22.x, contains an Access of Memory Location After End of Buffer vulnerability. A low pr…

Fix: 2.22.1 / 2.22.2+
Fix from $1,600 2024-08-29
Emc Xc Core Xcxr2 Firmware MEDIUM 6.0
CVE-2024-38303

Dell PowerEdge Platform, 14G Intel BIOS version(s) prior to 2.22.x, contains an Improper Input Validation vulnerability. A high privileged attacker w…

Fix: 2.22.1 / 2.22.2+
Fix from $1,600 2024-08-29
Xps 8960 Firmware HIGH 8.2
CVE-2024-39584

Dell Client Platform BIOS contains a Use of Default Cryptographic Key Vulnerability. A high privileged attacker with local access could potentially …

Fix: 1.16.0 / 1.18.0+
Fix from $1,950 2024-08-28
Intel Thunderbolt Controller Firmware Update Utility HIGH 7.3
CVE-2023-43078

Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder delet…

Fix: 1.11.0 / 1.14.1+
Fix from $1,950 2024-08-28
Power Manager HIGH 8.8
CVE-2024-39576

Dell Power Manager (DPM), versions 3.15.0 and prior, contains an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local a…

Fix: 3.16.0+
Fix from $1,950 2024-08-22
Repository Manager HIGH 7.8
CVE-2023-22576

Dell Repository Manager version 3.4.2 and earlier, contain a Local Privilege Escalation Vulnerability in Installation module. A local low privileged …

Fix: 3.4.3+
Fix from $1,950 2024-08-21
Supportassist For Home Pcs HIGH 7.3
CVE-2024-38305

Dell SupportAssist for Home PCs Installer exe version 4.0.3 contains a privilege escalation vulnerability in the installer. A local low-privileged au…

Mitigation only
Fix from $1,950 2024-08-21