Show filters
1,218 Total Results
Displaying 201-210 of 1,218
Sort by:
Attacker Value
Unknown

CVE-2024-0172

Disclosure Date: April 03, 2024 (last updated February 05, 2025)
Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper privilege management security vulnerability. An unauthenticated local attacker could potentially exploit this vulnerability, leading to privilege escalation.
Attacker Value
Unknown

CVE-2024-25944

Disclosure Date: March 29, 2024 (last updated February 05, 2025)
Dell OpenManage Enterprise, v4.0 and prior, contain(s) a path traversal vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, to gain unauthorized access to the files stored on the server filesystem, with the privileges of the running web application.
Attacker Value
Unknown

CVE-2024-25971

Disclosure Date: March 28, 2024 (last updated January 28, 2025)
Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to information disclosure, denial-of-service.
Attacker Value
Unknown

CVE-2024-25963

Disclosure Date: March 28, 2024 (last updated January 12, 2025)
Dell PowerScale OneFS, versions 8.2.2.x through 9.5.0.x contains a use of a broken cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to information disclosure.
Attacker Value
Unknown

CVE-2024-25960

Disclosure Date: March 28, 2024 (last updated January 12, 2025)
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains a cleartext transmission of sensitive information vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to escalation of privileges.
Attacker Value
Unknown

CVE-2024-25955

Disclosure Date: March 28, 2024 (last updated January 28, 2025)
Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity.
Attacker Value
Unknown

CVE-2024-25954

Disclosure Date: March 28, 2024 (last updated January 12, 2025)
Dell PowerScale OneFS, versions 9.5.0.x through 9.7.0.x, contain an insufficient session expiration vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.
Attacker Value
Unknown

CVE-2024-25953

Disclosure Date: March 28, 2024 (last updated January 12, 2025)
Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.
Attacker Value
Unknown

CVE-2024-25952

Disclosure Date: March 28, 2024 (last updated January 12, 2025)
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.
Attacker Value
Unknown

CVE-2024-25946

Disclosure Date: March 28, 2024 (last updated January 28, 2025)
Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could potentially exploit this vulnerability leading to an execution of an inserted command. Dell recommends customers to upgrade at the earliest opportunity.