Vulnerability index

Browse CVEs

1,383 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Emc Solutions Enabler Virtual Appliance CRITICAL 9.8
CVE-2018-1216EPSS 21%

A hard-coded password vulnerability was discovered in vApp Manager which is embedded in Dell EMC Unisphere for VMAX, Dell EMC Solutions Enabler, Dell…

Fix: 8.4.0.18 / 8.4.0.21+
Fix from $2,300 2018-03-08
Emc Solutions Enabler Virtual Appliance HIGH 8.8
CVE-2018-1215

An arbitrary file upload vulnerability was discovered in vApp Manager which is embedded in Dell EMC Unisphere for VMAX, Dell EMC Solutions Enabler, D…

Fix: 8.4.0.18 / 8.4.0.21+
Fix from $1,950 2018-03-08
Emc Supportassist Enterprise HIGH 7.0
CVE-2018-1214

Dell EMC SupportAssist Enterprise version 1.1 creates a local Windows user account named "OMEAdapterUser" with a default password as part of the inst…

Mitigation only
Fix from $1,950 2018-02-12
Emc Recoverpoint MEDIUM 6.7
CVE-2018-1184

An issue was discovered in EMC RecoverPoint for Virtual Machines versions prior to 5.1.1, EMC RecoverPoint version 5.1.0.0, and EMC RecoverPoint vers…

Fix: 5.0.1.3 / 5.1.1+
Fix from $1,600 2018-02-03
Emc Recoverpoint MEDIUM 6.7
CVE-2018-1185EPSS 6%

An issue was discovered in EMC RecoverPoint for Virtual Machines versions prior to 5.1.1, EMC RecoverPoint version 5.1.0.0, and EMC RecoverPoint vers…

Fix: 5.0.1.3 / 5.1.1+
Fix from $1,600 2018-02-03
Emc Vnx2 Firmware MEDIUM 6.1
CVE-2017-14383

In Dell EMC VNX2 versions prior to Operating Environment for File 8.1.9.217 and VNX1 versions prior to Operating Environment for File 7.1.80.8, a web…

Fix: 7.1.80.8 / 8.1.9.217+
Fix from $1,600 2018-01-04
2355dn Firmware MEDIUM 6.1
CVE-2017-14386

The web user interface of Dell 2335dn and 2355dn Multifunction Laser Printers, firmware versions prior to V2.70.06.26 A13 and V2.70.45.34 A10 respect…

Fix: 2.70.06.26_a13 / 2.70.45.34_a10+
Fix from $1,600 2017-12-07
Storage Manager CRITICAL 9.8
CVE-2017-14374

The SMI-S service in Dell Storage Manager versions earlier than 16.3.20 (aka 2016 R3.20) is protected using a hard-coded password. A remote user with…

Fix: 16.3.20+
Fix from $2,300 2017-12-06
Emc Scaleio HIGH 8.4
CVE-2017-8001

An issue was discovered in EMC ScaleIO 2.0.1.x. In a Linux environment, one of the support scripts saves the credentials of the ScaleIO MDM user who …

Mitigation only
Fix from $1,950 2017-11-28
Emc Unisphere CRITICAL 9.8
CVE-2017-14375

EMC Unisphere for VMAX Virtual Appliance (vApp) versions prior to 8.4.0.15, EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.15, EMC V…

Fix: 8.4.0.15 / 8.4.0.512+
Fix from $2,300 2017-11-01
Elastic Cloud Storage CRITICAL 9.8
CVE-2017-8021

EMC Elastic Cloud Storage (ECS) before 3.1 is affected by an undocumented account vulnerability that could potentially be leveraged by malicious user…

Fix: after 3.0
Fix from $2,300 2017-10-03
Emc M\&r HIGH 8.8
CVE-2017-8007

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Webservice Gateway is affected by a directory traversal vulner…

Fix: after 4.0.2
Fix from $1,950 2017-09-22
Emc M\&r HIGH 7.4
CVE-2017-8012

In EMC ViPR SRM, Storage M&R, VNX M&R, and M&R (Watch4Net) for SAS Solution Packs, the Java Management Extensions (JMX) protocol used to communicate …

Fix: after 4.0.2
Fix from $1,950 2017-09-22
Storage Manager 2016 HIGH 7.5
CVE-2017-10949EPSS 5%

Directory Traversal in Dell Storage Manager 2016 R2.1 causes Information Disclosure when the doGet method of the EmWebsiteServlet class doesn't prope…

Mitigation only
Fix from $1,950 2017-08-04
Emc M\&r CRITICAL 9.8
CVE-2017-8011EPSS 14%

EMC ViPR SRM, EMC Storage M&R, EMC VNX M&R, EMC M&R for SAS Solution Packs (EMC ViPR SRM prior to 4.1, EMC Storage M&R prior to 4.1, EMC VNX M&R all …

Fix: after 4.0.2
Fix from $2,300 2017-07-17
Emc Vasa Provider Virtual Appliance CRITICAL 9.8
CVE-2017-4997

EMC VASA Provider Virtual Appliance versions 8.3.x and prior has an unauthenticated remote code execution vulnerability that could potentially be exp…

Fix: after 8.3.0
Fix from $2,300 2017-06-29
Bsafe Cert C HIGH 7.5
CVE-2017-4981

EMC RSA BSAFE Cert-C before 2.9.0.5 contains a potential improper certificate processing vulnerability.

Fix: 2.9.0.5+
Fix from $1,950 2017-06-14
Emc Data Domain Os MEDIUM 6.7
CVE-2017-4983

EMC Data Domain OS 5.2 through 5.7 before 5.7.3.0 and 6.0 before 6.0.1.0 is affected by a privilege escalation vulnerability that may potentially be …

Mitigation only
Fix from $1,600 2017-05-04
Integrated Remote Access Controller Firmware CRITICAL 9.8
CVE-2015-7271

Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has a format string issue in racadm getsystinfo.

Fix: after 2.20.20.20
Fix from $2,300 2017-04-10
Integrated Remote Access Controller Firmware CRITICAL 9.8
CVE-2015-7272

Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 and 7/8 before 2.21.21.21 allows attackers to cause a denial of service (buffer overfl…

Fix: after 2.20.20.20
Fix from $2,300 2017-04-10
Integrated Remote Access Controller Firmware CRITICAL 9.8
CVE-2015-7273

Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has XXE.

Fix: after 2.20.20.20
Fix from $2,300 2017-04-10
Integrated Remote Access Controller Firmware HIGH 8.8
CVE-2015-7274

Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 allows remote attackers to execute arbitrary administrative HTTP commands.

Fix: after 1.99
Fix from $1,950 2017-04-10
Integrated Remote Access Controller Firmware HIGH 7.8
CVE-2015-7270

Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 and 7/8 before 2.21.21.21 allows directory traversal.

Fix: after 2.20.20.20
Fix from $1,950 2017-04-10
Integrated Remote Access Controller Firmware MEDIUM 6.1
CVE-2015-7275

Dell Integrated Remote Access Controller (iDRAC) 6 before 2.85 and 7/8 before 2.30.30.30 has XSS.

Fix: after 2.80
Fix from $1,600 2017-04-10
Recoverpoint For Virtual Machines HIGH 7.5
CVE-2016-6650

EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual Machines versions prior to 5.0 have an SSL Stripping Vulnerability that may p…

Fix: after 4.4.1.1
Fix from $1,950 2017-03-21
Sonicwall Secure Remote Access Server CRITICAL 9.8
CVE-2016-9682EPSS 23%

The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to two Remote Command Injection vulnerabilities in its web administrat…

No fix yet
Fix from $2,300 2017-02-22
Sonicwall Secure Remote Access Server CRITICAL 9.8
CVE-2016-9683EPSS 12%

The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerability in its web administrative …

Mitigation only
Fix from $2,300 2017-02-22
Sonicwall Secure Remote Access Server CRITICAL 9.8
CVE-2016-9684EPSS 7%

The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerability in its web administrative …

Mitigation only
Fix from $2,300 2017-02-22
Vce Vision Intelligent Operations HIGH 7.5
CVE-2015-4057

The "Plug-in for VMware vCenter" in VCE Vision Intelligent Operations before 2.6.5 sends a cleartext HTTP response upon a request for the Settings sc…

Fix: after 2.6.4
Fix from $1,950 2017-02-21
Vce Vision Intelligent Operations MEDIUM 6.7
CVE-2015-4056

The System Library in VCE Vision Intelligent Operations before 2.6.5 does not properly implement cryptography, which makes it easier for local users …

Fix: after 2.6.4
Fix from $1,600 2017-02-21