Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Powerpath Management Appliance HIGH 7.2
CVE-2022-34447

PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker wit…

Mitigation only
Fix from $1,950 2023-02-11
Supportassist For Business Pcs HIGH 7.1
CVE-2022-34388

Dell SupportAssist for Home PCs (version 3.11.4 and prior) and  SupportAssist for Business PCs (version 3.2.0 and prior) contain information disclosu…

Fix: after 3.11.4
Fix from $1,950 2023-02-11
System Update MEDIUM 6.0
CVE-2022-34404

Dell System Update, version 2.0.0 and earlier, contains an Improper Certificate Validation in data parser module. A local attacker with high privileg…

Fix: 2.0.1.0+
Fix from $1,600 2023-02-11
Supportassist For Business Pcs MEDIUM 5.5
CVE-2022-34386

Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weaknes…

Fix: after 3.11.4
Fix from $1,600 2023-02-11
Supportassist For Home Pcs MEDIUM 5.5
CVE-2022-34392

SupportAssist for Home PCs (versions 3.11.4 and prior) contain an insufficient session expiration Vulnerability. An authenticated non-admin user can …

Fix: after 3.11.4
Fix from $1,600 2023-02-11
Supportassist For Business Pcs MEDIUM 5.3
CVE-2022-34389

Dell SupportAssist contains a rate limit bypass issues in screenmeet API third party component. An unauthenticated attacker could potentially exploit…

Fix: 3.3.0 / 3.12.3+
Fix from $1,600 2023-02-11
Alienware Update HIGH 7.8
CVE-2022-34384

Dell SupportAssist Client Consumer (version 3.11.1 and prior), SupportAssist Client Commercial (version 3.2 and prior), Dell Command | Update, Dell U…

Fix: 4.5.0+
Fix from $1,950 2023-02-11
Supportassist For Business Pcs MEDIUM 5.5
CVE-2022-34385

SupportAssist for Home PCs (version 3.11.4 and prior) and  SupportAssist for Business PCs (version 3.2.0 and prior) contain cryptographic weakness vu…

Fix: after 3.11.4
Fix from $1,600 2023-02-11
R6515 Firmware MEDIUM 6.7
CVE-2022-34377

Dell PowerEdge BIOS and Dell Precision BIOS contain an Improper SMM communication buffer verification vulnerability. A local malicious user with high…

Fix: 1.19.0 / 2.9.3+
Fix from $1,600 2023-02-10
Supportassist For Home Pcs MEDIUM 6.5
CVE-2022-34366

Dell SupportAssist for Home PCs (version 3.11.2 and prior) contain Overly Permissive Cross-domain Whitelist vulnerability. An authenticated non-admin…

Fix: after 3.11.2
Fix from $1,600 2023-02-10
R6515 Firmware MEDIUM 5.5
CVE-2022-34376

Dell PowerEdge BIOS and Dell Precision BIOS contain an improper input validation vulnerability. A local authenticated malicious user may potentially …

Fix: 1.19.0 / 2.9.3+
Fix from $1,600 2023-02-10
Alienware Command Center HIGH 7.8
CVE-2023-24569

Dell Alienware Command Center versions 5.5.37.0 and prior contain an Improper Input validation vulnerability. A local authenticated malicious user co…

Fix: after 5.5.37.0
Fix from $1,950 2023-02-10
Alienware Update HIGH 7.1
CVE-2023-23698

Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on Windows Junction in the instal…

Patch available
Fix from $1,950 2023-02-10
Command \| Monitor HIGH 7.1
CVE-2023-24573

Dell Command | Monitor versions prior to 10.9 contain an arbitrary folder delete vulnerability during uninstallation. A locally authenticated malicio…

Fix: 10.9+
Fix from $1,950 2023-02-10
Emc Powerscale Onefs MEDIUM 6.7
CVE-2022-34454

Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user could potentially exploit this v…

Fix: after 9.3.0.7
Fix from $1,600 2023-02-10
Command \| Intel Vpro Out Of Band HIGH 7.8
CVE-2023-23696

Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability. A locally authenticated malicious user…

Fix: 4.4.0+
Fix from $1,950 2023-02-07
Emc Networker CRITICAL 9.8
CVE-2023-24576

EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsre…

Fix: after 19.8
Fix from $2,300 2023-02-03
Enterprise Sonic Distribution HIGH 7.5
CVE-2023-24574

Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in authentication component. An u…

Fix: 4.0.3+
Fix from $1,950 2023-02-02
Emc Powerscale Onefs HIGH 8.8
CVE-2023-22575

Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog. A low privileges user cou…

Fix: 9.1.0.27 / 9.2.1.20+
Fix from $1,950 2023-02-01
Emc Powerscale Onefs HIGH 8.1
CVE-2023-22574

Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module. A l…

Fix: 9.1.0.27 / 9.2.1.20+
Fix from $1,950 2023-02-01
Emc Powerscale Onefs MEDIUM 5.5
CVE-2023-22573

Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool. A low privileged local …

Fix: 9.1.0.27 / 9.2.1.20+
Fix from $1,600 2023-02-01
Emc Data Domain Os HIGH 8.8
CVE-2023-23692

Dell EMC prior to version DDOS 7.9 contain(s) an OS command injection Vulnerability. An authenticated non admin attacker could potentially exploit th…

Fix: 6.2.1.90 / 7.7.3+
Fix from $1,950 2023-02-01
Emc Powerscale Onefs HIGH 7.8
CVE-2023-22572

Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api. A low privile…

Fix: 9.1.0.27 / 9.2.1.20+
Fix from $1,950 2023-02-01
Emc Powerscale Onefs CRITICAL 9.8
CVE-2022-45100

Dell PowerScale OneFS, versions 8.2.x-9.3.x, contains an Improper Certificate Validation vulnerability. An remote unauthenticated attacker could pote…

Fix: 9.1.0.25 / 9.2.1.18+
Fix from $2,300 2023-02-01
Emc Powerscale Onefs HIGH 7.5
CVE-2022-46679

Dell PowerScale OneFS 8.2.x, 9.0.0.x - 9.4.0.x, contain an insufficient resource pool vulnerability. A remote unauthenticated attacker could potentia…

Fix: 9.1.0.26 / 9.2.1.19+
Fix from $1,950 2023-02-01
Vxrail Manager MEDIUM 6.7
CVE-2022-46756

Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability. A local high-privileged attacker could potentially exploit this vul…

Fix: 7.0.410+
Fix from $1,600 2023-02-01
Emc Data Protection Central MEDIUM 6.1
CVE-2022-45102

Dell EMC Data Protection Central, versions 19.1 through 19.7, contains a Host Header Injection vulnerability. A remote unauthenticated attacker may p…

Fix: 19.8+
Fix from $1,600 2023-02-01
Alienware M15 R6 Firmware HIGH 8.8
CVE-2022-34403

Dell BIOS contains a Stack based buffer overflow vulnerability. A local authenticated attacker could potentially exploit this vulnerability by using …

Fix: 1.4.3 / 1.8.0+
Fix from $1,950 2023-02-01
Openmanage Server Administrator HIGH 7.8
CVE-2022-34396

Dell OpenManage Server Administrator (OMSA) version 10.3.0.0 and earlier contains a DLL Injection Vulnerability. A local low privileged authenticated…

Fix: after 10.3.0.0
Fix from $1,950 2023-02-01
Emc Powerscale Onefs HIGH 7.8
CVE-2022-45099

Dell PowerScale OneFS, versions 8.2.x-9.4.x, contain a weak encoding for a NDMP password. A malicious and privileged local attacker could potentially…

Fix: 9.1.0.24 / 9.2.1.18+
Fix from $1,950 2023-02-01