Show filters
1,218 Total Results
Displaying 191-200 of 1,218
Sort by:
Attacker Value
Unknown
CVE-2024-28978
Disclosure Date: May 01, 2024 (last updated May 24, 2024)
Dell OpenManage Enterprise, versions 3.10 and 4.0, contains an Improper Access Control vulnerability. A high privileged remote attacker could potentially exploit this vulnerability, leading to unauthorized access to resources.
0
Attacker Value
Unknown
CVE-2024-3411
Disclosure Date: April 30, 2024 (last updated July 03, 2024)
Implementations of IPMI Authenticated sessions does not provide enough randomness to protect from session hijacking, allowing an attacker to use either predictable IPMI Session ID or weak BMC Random Number to bypass security controls using spoofed IPMI packets to manage BMC device.
0
Attacker Value
Unknown
CVE-2024-28961
Disclosure Date: April 29, 2024 (last updated February 04, 2025)
Dell OpenManage Enterprise, versions 4.0.0 and 4.0.1, contains a sensitive information disclosure vulnerability. A local low privileged malicious user could potentially exploit this vulnerability to obtain credentials leading to unauthorized access with elevated privileges. This could lead to further attacks, thus Dell recommends customers to upgrade at the earliest opportunity.
0
Attacker Value
Unknown
CVE-2024-28977
Disclosure Date: April 24, 2024 (last updated January 22, 2025)
Dell Repository Manager, versions 3.4.2 through 3.4.4,contains a Path Traversal vulnerability in logger module. A local attacker with low privileges could potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem with the privileges of the running web application.
0
Attacker Value
Unknown
CVE-2024-28976
Disclosure Date: April 24, 2024 (last updated January 22, 2025)
Dell Repository Manager, versions prior to 3.4.5, contains a Path Traversal vulnerability in API module. A local attacker with low privileges could potentially exploit this vulnerability to gain unauthorized write access to the files stored on the server filesystem with the privileges of the running web application.
0
Attacker Value
Unknown
CVE-2024-28963
Disclosure Date: April 24, 2024 (last updated February 05, 2025)
Telemetry Dashboard v1.0.0.7 for Dell ThinOS 2402 contains a sensitive information disclosure vulnerability. An unauthenticated user with local access to the device could exploit this vulnerability to read sensitive proxy settings information.
0
Attacker Value
Unknown
CVE-2024-0157
Disclosure Date: April 12, 2024 (last updated February 05, 2025)
Dell Storage Resource Manager, 4.9.0.0 and below, contain(s) a Session Fixation Vulnerability in SRM Windows Host Agent. An adjacent network unauthenticated attacker could potentially exploit this vulnerability, leading to the hijack of a targeted user's application session.
0
Attacker Value
Unknown
CVE-2024-22448
Disclosure Date: April 10, 2024 (last updated February 05, 2025)
Dell BIOS contains an Out-of-Bounds Write vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2024-22450
Disclosure Date: April 10, 2024 (last updated February 01, 2025)
Dell Alienware Command Center, versions prior to 6.2.7.0, contain an uncontrolled search path element vulnerability. A local malicious user could potentially inject malicious files in the file search path, leading to system compromise.
0
Attacker Value
Unknown
CVE-2024-0159
Disclosure Date: April 10, 2024 (last updated February 01, 2025)
Dell Alienware Command Center, versions 5.5.52.0 and prior, contain improper access control vulnerability, leading to Denial of Service on local system.
0