Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unity Operating Environment MEDIUM 6.5
CVE-2024-22226

Dell Unity, versions prior to 5.4, contain a path traversal vulnerability in its svc_supportassist utility. An authenticated attacker could potential…

Fix: 5.4.0.0.5.094+
Fix from $1,600 2024-02-12
Unity Operating Environment MEDIUM 5.4
CVE-2024-22230

Dell Unity, versions prior to 5.4, contains a Cross-site scripting vulnerability. An authenticated attacker could potentially exploit this vulnerabil…

Fix: 5.4.0.0.5.094+
Fix from $1,600 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-22222

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_udoctor utility. An authenticated malicious user wit…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-22223

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability within its svc_cbr utility. An authenticated malicious user with lo…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-22224

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-22225

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_supportassist utility. An authenticated attacker could p…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment MEDIUM 6.5
CVE-2024-22221

Dell Unity, versions prior to 5.4, contains SQL Injection vulnerability. An authenticated attacker could potentially exploit this vulnerability, lead…

Fix: 5.4.0.0.5.094+
Fix from $1,600 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-0167

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authenticated attacker could potent…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-0168

Dell Unity, versions prior to 5.4, contains a Command Injection Vulnerability in svc_oscheck utility. An authenticated attacker could potentially exp…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-0170

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authenticated attacker could potentiall…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment MEDIUM 5.4
CVE-2024-0169

Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabilit…

Fix: 5.4.0.0.5.094+
Fix from $1,600 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-0164

Dell Unity, versions prior to 5.4, contain an OS Command Injection Vulnerability in its svc_topstats utility. An authenticated attacker could potenti…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-0165

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_acldb_dump utility. An authenticated attacker could pote…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Unity Operating Environment HIGH 7.8
CVE-2024-0166

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authenticated attacker could potenti…

Fix: 5.4.0.0.5.094+
Fix from $1,950 2024-02-12
Emc Appsync MEDIUM 6.8
CVE-2024-22464

Dell EMC AppSync, versions from 4.2.0.0 to 4.6.0.0 including all Service Pack releases, contain an exposure of sensitive information vulnerability in…

Fix: 4.6.0.2+
Fix from $1,600 2024-02-08
Encryption HIGH 7.8
CVE-2023-32479

Dell Encryption, Dell Endpoint Security Suite Enterprise, and Dell Security Management Server versions prior to 11.9.0 contain privilege escalation v…

Fix: 11.9.0+
Fix from $1,950 2024-02-06
Display Manager MEDIUM 6.6
CVE-2023-32474

Dell Display Manager application, version 2.1.1.17 and prior, contain an insecure operation on windows junction/mount point. A local malicious user c…

Fix: 2.1.1.21+
Fix from $1,600 2024-02-06
Update Package Framework HIGH 7.1
CVE-2023-32454

DUP framework version 4.9.4.36 and prior contains insecure operation on Windows junction/Mount point vulnerability. A local malicious standard user c…

Fix: after 4.9.4.36
Fix from $1,950 2024-02-06
Display Manager HIGH 7.8
CVE-2023-32451

Dell Display Manager application, version 2.1.1.17, contains a vulnerability that low privilege user can execute malicious code during installation a…

Fix: 2.1.1.21+
Fix from $1,950 2024-02-06
Data Protection Search CRITICAL 9.8
CVE-2024-22433

Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain text when using LdapSettings.get_ldap_info in DP Search…

Fix: 19.6.4+
Fix from $2,300 2024-02-06
Command \| Monitor HIGH 7.1
CVE-2023-28049

Dell Command | Monitor, versions prior to 10.9, contain an arbitrary folder deletion vulnerability. A locally authenticated malicious user may exploi…

Fix: 10.9.1+
Fix from $1,950 2024-02-06
Power Manager HIGH 7.8
CVE-2023-25543

Dell Power Manager, versions prior to 3.14, contain an Improper Authorization vulnerability in DPM service. A low privileged malicious user could pot…

Fix: 3.14+
Fix from $1,950 2024-02-06
Bsafe Micro Edition Suite CRITICAL 9.8
CVE-2021-21575

Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain an Observable Timing Discrepancy Vulnerability.

Fix: 4.5.2+
Fix from $2,300 2024-02-02
Bsafe Ssl J CRITICAL 9.8
CVE-2022-34381

Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain an unmaintained third-party com…

Fix: 6.2.6.1 / 6.5+
Fix from $2,300 2024-02-02
Bsafe Crypto C Micro Edition CRITICAL 9.8
CVE-2020-29504

Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, contain a Missing Required Crypt…

Fix: 4.1.5 / 4.5.2+
Fix from $2,300 2024-02-02
Powerscale Onefs HIGH 7.8
CVE-2024-22449

Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerability. A low privileged local …

Fix: 9.6.1+
Fix from $1,950 2024-02-01
Powerscale Onefs MEDIUM 5.5
CVE-2024-22430

Dell PowerScale OneFS versions 8.2.x through 9.6.0.x contains an incorrect default permissions vulnerability. A local low privileges malicious user c…

Fix: 9.6.1+
Fix from $1,600 2024-02-01
Networker MEDIUM 6.5
CVE-2024-22432

Networker 19.9 and all prior versions contains a Plain-text Password stored in temporary config file during backup duration in NMDA MySQL Database ba…

Fix: after 19.9
Fix from $1,600 2024-01-25
Pair HIGH 7.1
CVE-2023-44281

Dell Pair Installer version prior to 1.2.1 contains an elevation of privilege vulnerability. A low privilege user with local access to the system cou…

Fix: 1.2.1+
Fix from $1,950 2024-01-24
Emc Idrac Service Module HIGH 7.8
CVE-2024-22428

Dell iDRAC Service Module, versions 5.2.0.0 and prior, contain an Incorrect Default Permissions vulnerability. It may allow a local unprivileged user…

Fix: after 5.2.0.0
Fix from $1,950 2024-01-16