Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Openmanage Enterprise HIGH 7.8
CVE-2024-28961

Dell OpenManage Enterprise, versions 4.0.0 and 4.0.1, contains a sensitive information disclosure vulnerability. A local low privileged malicious use…

Mitigation only
Fix from $1,950 2024-04-29
Repository Manager HIGH 7.8
CVE-2024-28976

Dell Repository Manager, versions prior to 3.4.5, contains a Path Traversal vulnerability in API module. A local attacker with low privileges could p…

Fix: 3.4.5+
Fix from $1,950 2024-04-24
Telemetry Dashboard MEDIUM 5.5
CVE-2024-28963

Telemetry Dashboard v1.0.0.7 for Dell ThinOS 2402 contains a sensitive information disclosure vulnerability. An unauthenticated user with local acces…

Mitigation only
Fix from $1,600 2024-04-24
Repository Manager MEDIUM 5.5
CVE-2024-28977

Dell Repository Manager, versions 3.4.2 through 3.4.4,contains a Path Traversal vulnerability in logger module. A local attacker with low privileges …

Fix: after 3.4.4
Fix from $1,600 2024-04-24
Storage Monitoring And Reporting MEDIUM 6.5
CVE-2024-0157

Dell Storage Resource Manager, 4.9.0.0 and below, contain(s) a Session Fixation Vulnerability in SRM Windows Host Agent. An adjacent network unauthen…

Fix: 5.0.0.0+
Fix from $1,600 2024-04-12
Alienware Command Center HIGH 7.8
CVE-2024-22450

Dell Alienware Command Center, versions prior to 6.2.7.0, contain an uncontrolled search path element vulnerability. A local malicious user could pot…

Fix: 6.2.7.0+
Fix from $1,950 2024-04-10
Alienware Command Center MEDIUM 5.5
CVE-2024-0159

Dell Alienware Command Center, versions 5.5.52.0 and prior, contain improper access control vulnerability, leading to Denial of Service on local syst…

Fix: 5.6.1.0+
Fix from $1,600 2024-04-10
Poweredge R660 Firmware HIGH 7.8
CVE-2024-0172

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper privilege management security vulnerability. An unauthenticated local att…

Fix: 1.5.6+
Fix from $1,950 2024-04-03
Openmanage Enterprise HIGH 7.5
CVE-2024-25944

Dell OpenManage Enterprise, v4.0 and prior, contain(s) a path traversal vulnerability. An unauthenticated remote attacker could potentially exploit t…

Fix: 4.0.1+
Fix from $1,950 2024-03-29
Powerscale Onefs HIGH 7.5
CVE-2024-25963

Dell PowerScale OneFS, versions 8.2.2.x through 9.5.0.x contains a use of a broken cryptographic algorithm vulnerability. A remote unauthenticated at…

Fix: 9.5.0.8+
Fix from $1,950 2024-03-28
Powerprotect Data Manager MEDIUM 6.5
CVE-2024-25971

Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high privileged attacker could poten…

Fix: 19.16+
Fix from $1,600 2024-03-28
Powermax Eem HIGH 8.8
CVE-2024-25946

Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnera…

Fix: 9.2.4.6 / 9.2.4.9+
Fix from $1,950 2024-03-28
Powermax Eem HIGH 8.8
CVE-2024-25955

Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnera…

Fix: 9.2.4.6 / 9.2.4.9+
Fix from $1,950 2024-03-28
Powerscale Onefs HIGH 7.8
CVE-2024-25960

Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains a cleartext transmission of sensitive information vulnerability. A local low privileg…

Fix: 9.4.0.17 / 9.5.0.8+
Fix from $1,950 2024-03-28
Powerscale Onefs HIGH 7.5
CVE-2024-25954

Dell PowerScale OneFS, versions 9.5.0.x through 9.7.0.x, contain an insufficient session expiration vulnerability. A remote unauthenticated attacker …

Fix: 9.5.0.8 / 9.7.0.2+
Fix from $1,950 2024-03-28
Powerscale Onefs MEDIUM 6.0
CVE-2024-25952

Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privileged atta…

Fix: 9.5.0.8 / 9.7.0.2+
Fix from $1,600 2024-03-28
Powerscale Onefs MEDIUM 6.0
CVE-2024-25953

Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privileged atta…

Fix: 9.5.0.8 / 9.7.0.2+
Fix from $1,600 2024-03-28
Powerscale Onefs MEDIUM 6.7
CVE-2024-25961

Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vulnerability. A local high privileged attacker coul…

Fix: 9.5.0.8 / 9.7.0.2+
Fix from $1,600 2024-03-28
Powerscale Onefs MEDIUM 5.5
CVE-2024-25959

Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an insertion of sensitive information into log file vulnerability. A low privileged l…

Fix: 9.4.0.17 / 9.5.0.8+
Fix from $1,600 2024-03-28
Insightiq MEDIUM 6.5
CVE-2024-25962

Dell InsightIQ, version 5.0, contains an improper access control vulnerability. A remote low privileged attacker could potentially exploit this vulne…

Mitigation only
Fix from $1,600 2024-03-27
Grab HIGH 7.8
CVE-2024-25958

Dell Grab for Windows, versions up to and including 5.0.4, contain Weak Application Folder Permissions vulnerability. A local authenticated attacker …

Fix: 5.0.5+
Fix from $1,950 2024-03-26
Grab MEDIUM 5.5
CVE-2024-25956

Dell Grab for Windows, versions 5.0.4 and below, contains an improper file permissions vulnerability. A locally authenticated attacker could potentia…

Fix: 5.0.5+
Fix from $1,600 2024-03-26
Grab MEDIUM 5.5
CVE-2024-25957

Dell Grab for Windows, versions 5.0.4 and below, contains a cleartext storage of sensitive information vulnerability in its appsync module. An authen…

Fix: 5.0.5+
Fix from $1,600 2024-03-26
Powerscale Onefs HIGH 7.5
CVE-2024-25964

Dell PowerScale OneFS 9.5.0.x through 9.7.0.x contain a covert timing channel vulnerability. A remote unauthenticated attacker could potentially expl…

Fix: 9.5.0.7 / 9.7.0.1+
Fix from $1,950 2024-03-25
Poweredge R730 Firmware MEDIUM 6.8
CVE-2024-25942

Dell PowerEdge Server BIOS contains an Improper SMM communication buffer verification vulnerability. A physical high privileged attacker could potent…

Fix: 2.14.0 / 2.19.0+
Fix from $1,600 2024-03-19
Poweredge R730 Firmware MEDIUM 6.0
CVE-2024-22453

Dell PowerEdge Server BIOS contains a heap-based buffer overflow vulnerability. A local high privileged attacker could potentially exploit this vulne…

Fix: 2.14.0 / 2.19.0+
Fix from $1,600 2024-03-19
Poweredge R660 Firmware HIGH 8.8
CVE-2024-0162

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileg…

Fix: 1.8.0 / 2.0.0+
Fix from $1,950 2024-03-13
Poweredge R660 Firmware MEDIUM 6.3
CVE-2024-0163

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain a TOCTOU race condition vulnerability. A local low privileged attacker could potentia…

Fix: 1.8.0 / 2.0.0+
Fix from $1,600 2024-03-13
Poweredge T360 Firmware HIGH 8.4
CVE-2024-0161

Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulnerability. A local low privileg…

Fix: 1.1.1 / 1.13.2+
Fix from $1,950 2024-03-13
Idrac8 HIGH 8.0
CVE-2024-25951

A command injection vulnerability exists in local RACADM. A malicious authenticated user could gain control of the underlying operating system.

Fix: 2.85.85.85+
Fix from $1,950 2024-03-09