Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Data Domain Operating System HIGH 8.8
CVE-2024-29176

Dell PowerProtect DD, version(s) 8.0, 7.13.1.0, 7.10.1.30, 7.7.5.40, contain(s) an Out-of-bounds Write vulnerability. A low privileged attacker with …

Fix: 5.16.0.0 / 7.7.5.40+
Fix from $1,950 2024-06-26
Data Domain Operating System MEDIUM 5.9
CVE-2024-29175

Dell PowerProtect Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.40, LTS 7.10.1.30 contain an weak cryptographic algorithm vulnerability. A remot…

Fix: 7.7.5.40 / 7.10.1.30+
Fix from $1,600 2024-06-26
Poweredge R6615 Firmware MEDIUM 5.3
CVE-2024-0171

Dell PowerEdge Server BIOS contains an TOCTOU race condition vulnerability. A local low privileged attacker could potentially exploit this vulnerabil…

Fix: 1.3.3 / 1.8.3+
Fix from $1,600 2024-06-25
Secure Connect Gateway HIGH 8.1
CVE-2024-29169

Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal audit REST API. A remote authenticated at…

Fix: 5.24.00.14+
Fix from $1,950 2024-06-13
Policy Manager For Secure Connect Gateway CRITICAL 9.8
CVE-2024-37131

SCG Policy Manager, all versions, contains an overly permissive Cross-Origin Resource Policy (CORP) vulnerability. A remote unauthenticated attacker …

Fix: 5.24.00.14+
Fix from $2,300 2024-06-13
Secure Connect Gateway HIGH 8.8
CVE-2024-29168

Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal assets REST API. A remote authenticated a…

Fix: after 5.22.00.18
Fix from $1,950 2024-06-13
Secure Connect Gateway MEDIUM 5.4
CVE-2024-28965

Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal enable REST API (if enabl…

Fix: after 5.22.00.18
Fix from $1,600 2024-06-13
Secure Connect Gateway MEDIUM 5.4
CVE-2024-28966

Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal update REST API (if enabl…

Fix: after 5.22.00.18
Fix from $1,600 2024-06-13
Secure Connect Gateway MEDIUM 5.4
CVE-2024-28967

Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an internal maintenance REST API (if …

Fix: after 5.22.00.18
Fix from $1,600 2024-06-13
Secure Connect Gateway MEDIUM 5.4
CVE-2024-28968

Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal email and collection setting…

Fix: after 5.22.00.18
Fix from $1,600 2024-06-13
Xps 8960 Firmware HIGH 8.2
CVE-2024-32859

Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with l…

Fix: 1.14.0 / 1.16.0+
Fix from $1,950 2024-06-13
Alienware Area 51m R2 Firmware HIGH 8.2
CVE-2024-32860

Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with l…

Fix: 1.0.24 / 1.1.12+
Fix from $1,950 2024-06-13
Xps 8960 Firmware HIGH 8.2
CVE-2024-32858

Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with l…

Fix: 1.14.0 / 1.16.0+
Fix from $1,950 2024-06-13
Xps 8960 Firmware MEDIUM 6.0
CVE-2024-32856

Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A high privileged attacker with l…

Fix: 1.14.0 / 1.16.0+
Fix from $1,600 2024-06-13
Common Event Enabler HIGH 7.8
CVE-2024-28964

Dell Common Event Enabler, version 8.9.10.0 and prior, contain an insecure deserialization vulnerability in CAVATools. A local unauthenticated attack…

Fix: after 8.9.10.0
Fix from $1,950 2024-06-12
Networking Os10 HIGH 8.8
CVE-2024-25949

Dell OS10 Networking Switches, versions10.5.6.x, 10.5.5.x, 10.5.4.x and 10.5.3.x ,contain an improper authorization vulnerability. A remote authentic…

Fix: 10.5.3.10 / 10.5.4.11+
Fix from $1,950 2024-06-12
Xps 17 9700 Firmware MEDIUM 6.8
CVE-2024-0160

Dell Client Platform contains an incorrect authorization vulnerability. An attacker with physical access to the system could potentially exploit this…

Fix: 1.28.0 / 1.29.0+
Fix from $1,600 2024-06-12
Openmanage Server Administrator HIGH 7.8
CVE-2024-37130

Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains a Local Privilege Escalation vulnerability via XSL Hijacking. A local low…

Fix: after 11.0.1.0
Fix from $1,950 2024-06-11
Vostro 5625 Firmware HIGH 7.6
CVE-2023-32475

Dell BIOS contains a missing support for integrity check vulnerability. An attacker with physical access to the system could potentially bypass secur…

Fix: 1.8.0 / 1.12.0+
Fix from $1,950 2024-06-07
Powerscale Onefs HIGH 8.1
CVE-2024-29170

Dell PowerScale OneFS versions 8.2.x through 9.8.0.x contain a use of hard coded credentials vulnerability. An adjacent network unauthenticated attac…

Fix: after 9.8.0.0
Fix from $1,950 2024-06-04
Data Protection Advisor MEDIUM 6.5
CVE-2024-28974

Dell Data Protection Advisor, version(s) 19.9, contain(s) an Inadequate Encryption Strength vulnerability. A low privileged attacker with remote acce…

Fix: 19.9+
Fix from $1,600 2024-05-29
Edge Gateway 5000 Firmware MEDIUM 6.7
CVE-2024-22429

Dell BIOS contains an Improper Input Validation vulnerability. A local authenticated malicious user with admin privileges could potentially exploit t…

Fix: 1.18.0 / 1.24.0+
Fix from $1,600 2024-05-17
Powerscale Onefs MEDIUM 6.5
CVE-2024-25970

Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an improper input validation vulnerability. A low privileged remote attacker could pote…

Fix: 9.4.0.18 / 9.5.0.8+
Fix from $1,600 2024-05-14
Powerscale Onefs MEDIUM 5.5
CVE-2024-25969

Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an allocation of resources without limits or throttling vulnerability. A local unauthen…

Fix: 9.4.0.18 / 9.5.0.8+
Fix from $1,600 2024-05-14
Powerscale Onefs HIGH 7.5
CVE-2024-25968

Dell PowerScale OneFS versions 8.2.x through 9.7.0.2 contains a use of a broken or risky cryptographic algorithm vulnerability. A remote unauthentica…

Fix: 9.5.0.8 / 9.7.0.3+
Fix from $1,950 2024-05-14
Powerscale Onefs MEDIUM 6.7
CVE-2024-25967

Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an execution with unnecessary privileges vulnerability. A local high privileged attacke…

Fix: 9.4.0.18 / 9.5.0.8+
Fix from $1,600 2024-05-14
Powerscale Onefs HIGH 7.5
CVE-2024-25966

Dell PowerScale OneFS versions 8.2.x through 9.7.0.2 contains an improper handling of unexpected data type vulnerability. A remote unauthenticated at…

Fix: 9.4.0.18 / 9.5.0.8+
Fix from $1,950 2024-05-14
Dm5500 Firmware MEDIUM 6.5
CVE-2024-24908

Dell PowerProtect DM5500 version 5.15.0.0 and prior contain an Arbitrary File Delete via Path Traversal vulnerability. A remote attacker with high pr…

Fix: 5.16.0.0+
Fix from $1,600 2024-05-08
Dm5500 Firmware HIGH 7.2
CVE-2024-22460

Dell PowerProtect DM5500 version 5.15.0.0 and prior contains an insecure deserialization Vulnerability. A remote attacker with high privileges could …

Fix: 5.16.0.0+
Fix from $1,950 2024-05-08
Openmanage Enterprise MEDIUM 6.5
CVE-2024-28978

Dell OpenManage Enterprise, versions 3.10 and 4.0, contains an Improper Access Control vulnerability. A high privileged remote attacker could potenti…

Mitigation only
Fix from $1,600 2024-05-01