Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Powerscale Onefs CRITICAL 9.1
CVE-2024-22463

Dell PowerScale OneFS 8.2.x through 9.6.0.x contains a use of a broken or risky cryptographic algorithm vulnerability. A remote unprivileged attacker…

Fix: 9.4.0.17 / 9.5.0.6+
Fix from $2,300 2024-03-04
Digital Delivery HIGH 7.8
CVE-2024-0155

Dell Digital Delivery, versions prior to 5.2.0.0, contain a Use After Free Vulnerability. A local low privileged attacker could potentially exploit t…

Fix: 5.2.0.0+
Fix from $1,950 2024-03-04
Digital Delivery HIGH 7.8
CVE-2024-0156

Dell Digital Delivery, versions prior to 5.2.0.0, contain a Buffer Overflow Vulnerability. A local low privileged attacker could potentially exploit …

Fix: 5.2.0.0+
Fix from $1,950 2024-03-04
Display And Peripheral Manager HIGH 7.8
CVE-2024-22452

Dell Display and Peripheral Manager for macOS prior to 1.3 contains an improper access control vulnerability. A low privilege user could potentially …

Fix: 1.3+
Fix from $1,950 2024-03-04
Policy Manager For Secure Connect Gateway HIGH 8.0
CVE-2024-24903

Dell Secure Connect Gateway (SCG) Policy Manager, version 5.10+, contain a weak password recovery mechanism for forgotten passwords. An adjacent netw…

Fix: 5.22.00.16+
Fix from $1,950 2024-03-01
Policy Manager For Secure Connect Gateway HIGH 7.6
CVE-2024-24904

Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability. An adjacent network high priv…

Fix: 5.22.00.16+
Fix from $1,950 2024-03-01
Policy Manager For Secure Connect Gateway HIGH 7.6
CVE-2024-24905

Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability. An adjacent network high priv…

Fix: 5.22.00.16+
Fix from $1,950 2024-03-01
Policy Manager For Secure Connect Gateway HIGH 7.6
CVE-2024-24907

Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability in the Filters page. An adjace…

Fix: 5.22.00.16+
Fix from $1,950 2024-03-01
Policy Manager For Secure Connect Gateway HIGH 7.6
CVE-2024-24906

Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain(s) a Stored Cross-Site Scripting Vulnerability in Policy page. An adjacent ne…

Fix: 5.22.00.16+
Fix from $1,950 2024-03-01
Policy Manager For Secure Connect Gateway HIGH 7.3
CVE-2024-24900

Dell Secure Connect Gateway (SCG) Policy Manager, all versions, contain an improper authorization vulnerability. An adjacent network low privileged a…

Fix: 5.22.00.16+
Fix from $1,950 2024-03-01
Update Package Framework HIGH 7.3
CVE-2023-39254

Dell Update Package (DUP), Versions prior to 4.9.10 contain an Uncontrolled Search Path vulnerability. A malicious user with local access to the syst…

Fix: 4.9.10+
Fix from $1,950 2024-03-01
Secure Connect Gateway HIGH 8.8
CVE-2024-22457

Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacke…

Patch available
Fix from $1,950 2024-03-01
Secure Connect Gateway MEDIUM 5.3
CVE-2024-22458

Dell Secure Connect Gateway, 5.18, contains an Inadequate Encryption Strength Vulnerability. An unauthenticated network attacker could potentially ex…

Patch available
Fix from $1,600 2024-03-01
Elastic Cloud Storage MEDIUM 6.5
CVE-2024-22459

Dell ECS, versions 3.6 through 3.6.2.5, and 3.7 through 3.7.0.6, and 3.8 through 3.8.0.4 versions, contain an improper access control vulnerability. …

Fix: 3.6.2.6 / 3.7.0.7+
Fix from $1,600 2024-02-28
Recoverpoint For Virtual Machines CRITICAL 9.8
CVE-2024-22426

Dell RecoverPoint for Virtual Machines 5.3.x, 6.0.SP1 contains an OS Command injection vulnerability. An unauthenticated remote attacker could potent…

Mitigation only
Fix from $2,300 2024-02-16
Recoverpoint For Virtual Machines CRITICAL 9.8
CVE-2024-22425

Dell RecoverPoint for Virtual Machines 5.3.x, 6.0.SP1 contains a brute force/dictionary attack vulnerability. An unauthenticated remote attacker coul…

Mitigation only
Fix from $2,300 2024-02-16
Enterprise Storage Integrator For Sap Landscape Management CRITICAL 9.8
CVE-2023-39245

DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote un…

Fix: 10.0.0.0+
Fix from $2,300 2024-02-15
Smartfabric Os10 CRITICAL 9.8
CVE-2023-32462

Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A remot…

Fix: 10.5.2.12 / 10.5.3.8+
Fix from $2,300 2024-02-15
Enterprise Sonic Distribution CRITICAL 9.8
CVE-2023-32484

Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input validation vulnerability. A remot…

Fix: 3.5.5 / 4.0.6+
Fix from $2,300 2024-02-15
Enterprise Storage Integrator For Sap Landscape Management CRITICAL 9.8
CVE-2023-39244

DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote un…

Fix: 10.0.0.0+
Fix from $2,300 2024-02-15
Smartfabric Os10 CRITICAL 9.1
CVE-2023-28078

Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacke…

Fix: 10.5.2.12 / 10.5.3.8+
Fix from $2,300 2024-02-15
Secure Connect Gateway MEDIUM 6.5
CVE-2023-44294

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been id…

Fix: 5.20.00.00+
Fix from $1,600 2024-02-14
Supportassist For Business Pcs HIGH 7.8
CVE-2023-44283

In Dell SupportAssist for Home PCs (between v3.0 and v3.14.1) and SupportAssist for Business PCs (between v3.0 and v3.4.1), a security concern has be…

Fix: 3.5.0 / 3.14.2+
Fix from $1,950 2024-02-14
Secure Connect Gateway MEDIUM 6.5
CVE-2023-44293

In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been id…

Fix: 5.20.00.00+
Fix from $1,600 2024-02-14
Supportassist For Home Pcs MEDIUM 5.3
CVE-2023-39249

Dell SupportAssist for Business PCs version 3.4.0 contains a local Authentication Bypass vulnerability that allows locally authenticated non-admin us…

Mitigation only
Fix from $1,600 2024-02-14
Supportassist For Home Pcs MEDIUM 6.5
CVE-2023-25535

Dell SupportAssist for Home PCs Installer Executable file version prior to 3.13.2.19 used for initial installation has a high vulnerability that can …

Fix: 3.13.2.19+
Fix from $1,600 2024-02-14
Powerprotect Data Manager HIGH 8.8
CVE-2024-22454

Dell PowerProtect Data Manager, version 19.15 and prior versions, contain a weak password recovery mechanism for forgotten passwords. A remote unauth…

Fix: after 19.15
Fix from $1,950 2024-02-13
Powerprotect Data Manager HIGH 7.2
CVE-2024-22445

Dell PowerProtect Data Manager, version 19.15 and prior versions, contain an OS command injection vulnerability. A remote high privileged attacker co…

Fix: after 19.15
Fix from $1,950 2024-02-13
Unity Operating Environment HIGH 7.8
CVE-2024-22227

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_dc utility. An authenticated attacker could potentially …

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-22228

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cifssupport utility. An authenticated attacker could pot…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12