Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wyse Management Suite HIGH 7.4
CVE-2021-36337

Dell Wyse Management Suite version 3.3.1 and prior support insecure Transport Security Protocols TLS 1.0 and TLS 1.1 which are susceptible to Man-In-…

Fix: after 3.3.1
Fix from $1,950 2021-12-21
Emc Avamar Server MEDIUM 6.7
CVE-2021-36317

Dell EMC Avamar Server version 19.4 contains a plain-text password storage vulnerability in AvInstaller. A local attacker could potentially exploit t…

Patch available
Fix from $1,600 2021-12-21
Emc Avamar Server MEDIUM 6.7
CVE-2021-36318

Dell EMC Avamar versions 18.2,19.1,19.2,19.3,19.4 contain a plain-text password storage vulnerability. A high privileged user could potentially explo…

Patch available
Fix from $1,600 2021-12-21
Powerpath Management Appliance MEDIUM 6.7
CVE-2021-43587

Dell PowerPath Management Appliance, versions 3.2, 3.1, 3.0 P01, 3.0, and 2.6, use hard-coded cryptographic key. A local high-privileged malicious us…

Patch available
Fix from $1,600 2021-12-21
Wyse Device Agent MEDIUM 5.5
CVE-2021-36341

Dell Wyse Device Agent version 14.5.4.1 and below contain a sensitive data exposure vulnerability. A local authenticated user with low privileges cou…

Fix: after 14.5.4.1
Fix from $1,600 2021-12-21
Emc Avamar Server HIGH 7.2
CVE-2021-36316

Dell EMC Avamar Server versions 18.2, 19.1, 19.2, 19.3, and 19.4 contain an improper privilege management vulnerability in AUI. A malicious user with…

Patch available
Fix from $1,950 2021-12-21
Emc Streaming Data Platform CRITICAL 9.8
CVE-2021-36330

Dell EMC Streaming Data Platform versions before 1.3 contain an Insufficient Session Expiration Vulnerability. A remote unauthenticated attacker may …

Fix: 1.3+
Fix from $2,300 2021-11-30
Emc Streaming Data Platform HIGH 8.8
CVE-2021-36328

Dell EMC Streaming Data Platform versions before 1.3 contain a SQL Injection Vulnerability. A remote malicious user may potentially exploit this vuln…

Fix: 1.3+
Fix from $1,950 2021-11-30
Emc Streaming Data Platform MEDIUM 6.5
CVE-2021-36329

Dell EMC Streaming Data Platform versions before 1.3 contain an Indirect Object Reference Vulnerability. A remote malicious user may potentially expl…

Fix: 1.3+
Fix from $1,600 2021-11-30
Emc Streaming Data Platform MEDIUM 6.5
CVE-2021-36326

Dell EMC Streaming Data Platform, versions prior to 1.3 contain an SSL Strip Vulnerability in the User Interface (UI). A remote unauthenticated attac…

Fix: 1.3+
Fix from $1,600 2021-11-30
Emc Streaming Data Platform MEDIUM 5.3
CVE-2021-36327

Dell EMC Streaming Data Platform versions before 1.3 contain a Server Side Request Forgery Vulnerability. A remote unauthenticated attacker may poten…

Fix: 1.3+
Fix from $1,600 2021-11-30
Emc Cloud Link CRITICAL 9.8
CVE-2021-36314

Dell EMC CloudLink 7.1 and all prior versions contain an Arbitrary File Creation Vulnerability. A remote unauthenticated attacker, may potentially ex…

Fix: 7.1.1+
Fix from $2,300 2021-11-23
Cloudlink CRITICAL 9.1
CVE-2021-36312

Dell EMC CloudLink 7.1 and all prior versions contain a Hard-coded Password Vulnerability. A remote high privileged attacker, with the knowledge of t…

Fix: 7.1.1+
Fix from $2,300 2021-11-23
Emc Cloud Link HIGH 8.8
CVE-2021-36335

Dell EMC CloudLink 7.1 and all prior versions contain an Improper Input Validation Vulnerability. A remote low privileged attacker, may potentially e…

Fix: 7.1.1+
Fix from $1,950 2021-11-23
Cloudlink HIGH 7.2
CVE-2021-36313

Dell EMC CloudLink 7.1 and all prior versions contain an OS command injection Vulnerability. A remote high privileged attacker, may potentially explo…

Fix: 7.1.1+
Fix from $1,950 2021-11-23
Emc Cloud Link MEDIUM 6.8
CVE-2021-36334

Dell EMC CloudLink 7.1 and all prior versions contain a CSV formula Injection Vulnerability. A remote high privileged attacker, may potentially explo…

Fix: 7.1.1+
Fix from $1,600 2021-11-23
Emc Cloud Link MEDIUM 5.5
CVE-2021-36333

Dell EMC CloudLink 7.1 and all prior versions contain a Buffer Overflow Vulnerability. A local low privileged attacker, may potentially exploit this …

Fix: 7.1.1+
Fix from $1,600 2021-11-23
Emc Cloud Link MEDIUM 5.4
CVE-2021-36332

Dell EMC CloudLink 7.1 and all prior versions contain a HTML and Javascript Injection Vulnerability. A remote low privileged attacker, may potentiall…

Fix: 7.1.1+
Fix from $1,600 2021-11-23
Emc Idrac9 Firmware HIGH 8.2
CVE-2021-36300EPSS 33%

iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. An unauthenticated remote attacker may potentially exploit th…

Fix: 5.00.00.00+
Fix from $1,950 2021-11-23
Emc Idrac9 Firmware HIGH 8.1
CVE-2021-36299EPSS 30%

Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated mali…

Fix: 4.40.29.00+
Fix from $1,950 2021-11-23
Emc Networker HIGH 7.8
CVE-2021-36311

Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability. Any local malicious user with networker user privileges ma…

Fix: 19.5.0.0+
Fix from $1,950 2021-11-23
Emc Idrac8 Firmware HIGH 7.2
CVE-2021-36301EPSS 28%

Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote a…

Fix: 2.80.80.80 / 4.40.40.00+
Fix from $1,950 2021-11-23
Emc Powerscale Onefs MEDIUM 5.5
CVE-2021-21561

Dell PowerScale OneFS version 8.1.2 contains a sensitive information exposure vulnerability. This would allow a malicious user with ISI_PRIV_LOGIN_SS…

Patch available
Fix from $1,600 2021-11-23
Networking Os10 CRITICAL 9.8
CVE-2021-36306

Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains an authentication bypass vulnerability. A remote unauthenticated …

Fix: 10.4.3.8 / 10.5.0.10+
Fix from $2,300 2021-11-20
Networking Os10 CRITICAL 9.8
CVE-2021-36308

Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an authentication bypass vulnerability. A remote unauthe…

Fix: 10.4.3.8 / 10.5.0.10+
Fix from $2,300 2021-11-20
X1008p Firmware CRITICAL 9.8
CVE-2021-36320

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an authentication bypass vulnerability. A remote unauthenticated attacker may pot…

Fix: 3.0.1.8+
Fix from $2,300 2021-11-20
Networking Os10 HIGH 8.8
CVE-2021-36307

Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains a privilege escalation vulnerability. A malicious low privileged …

Fix: 10.4.3.8 / 10.5.0.10+
Fix from $1,950 2021-11-20
X1008p Firmware HIGH 7.5
CVE-2021-36321

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain an improper input validation vulnerability. A remote unauthenticated attacker may…

Fix: 3.0.1.8+
Fix from $1,950 2021-11-20
X1008p Firmware MEDIUM 6.1
CVE-2021-36322

Dell Networking X-Series firmware versions prior to 3.0.1.8 contain a host header injection vulnerability. A remote unauthenticated attacker may pote…

Fix: 3.0.1.8+
Fix from $1,600 2021-11-20
Secure Connect Gateway MEDIUM 5.5
CVE-2021-36340

Dell EMC SCG 5.00.00.10 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability …

Mitigation only
Fix from $1,600 2021-11-20