Show filters
1,219 Total Results
Displaying 241-250 of 1,219
Sort by:
Attacker Value
Unknown
CVE-2024-22457
Disclosure Date: March 01, 2024 (last updated February 26, 2025)
Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacker could potentially exploit this vulnerability, leading to impersonation of the server through presenting a fake self-signed certificate and communicating with the remote server.
0
Attacker Value
Unknown
CVE-2024-22459
Disclosure Date: February 28, 2024 (last updated February 26, 2025)
Dell ECS, versions 3.6 through 3.6.2.5, and 3.7 through 3.7.0.6, and 3.8 through 3.8.0.4 versions, contain an improper access control vulnerability. A remote high privileged attacker could potentially exploit this vulnerability, leading to unauthorized access to all buckets and their data within a namespace
0
Attacker Value
Unknown
CVE-2024-22426
Disclosure Date: February 16, 2024 (last updated February 26, 2025)
Dell RecoverPoint for Virtual Machines 5.3.x, 6.0.SP1 contains an OS Command injection vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to execute arbitrary operating system commands, which will get executed in the context of the root user, resulting in a complete system compromise.
0
Attacker Value
Unknown
CVE-2024-22425
Disclosure Date: February 16, 2024 (last updated February 26, 2025)
Dell RecoverPoint for Virtual Machines 5.3.x, 6.0.SP1 contains a brute force/dictionary attack vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to launch a brute force attack or a dictionary attack against the RecoverPoint login form. This allows attackers to brute-force the password of valid users in an automated manner.
0
Attacker Value
Unknown
CVE-2023-39245
Disclosure Date: February 15, 2024 (last updated February 26, 2025)
DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote unauthenticated attacker could potentially exploit this vulnerability by eavesdropping the network traffic to gain admin level credentials.
0
Attacker Value
Unknown
CVE-2023-39244
Disclosure Date: February 15, 2024 (last updated February 26, 2025)
DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote unauthenticated attacker could potentially exploit this vulnerability by eavesdropping the network traffic to gain admin level credentials.
0
Attacker Value
Unknown
CVE-2023-32484
Disclosure Date: February 15, 2024 (last updated February 26, 2025)
Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input validation vulnerability. A remote unauthenticated malicious user may exploit this vulnerability and escalate privileges up to the highest administrative level. This is a Critical vulnerability affecting certain protocols, Dell recommends customers to upgrade at the earliest opportunity.
0
Attacker Value
Unknown
CVE-2023-32462
Disclosure Date: February 15, 2024 (last updated February 26, 2025)
Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands and possible system takeover. This is a critical vulnerability as it allows an attacker to cause severe damage. Dell recommends customers to upgrade at the earliest opportunity.
0
Attacker Value
Unknown
CVE-2023-28078
Disclosure Date: February 15, 2024 (last updated February 26, 2025)
Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A remote unauthenticated attacker could potentially exploit this vulnerability leading to information disclosure and a possible Denial of Service when a huge number of requests are sent to the switch. This is a high severity vulnerability as it allows an attacker to view sensitive data. Dell recommends customers to upgrade at the earliest opportunity.
0
Attacker Value
Unknown
CVE-2023-44294
Disclosure Date: February 14, 2024 (last updated February 26, 2025)
In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API.
This issue may potentially lead to unintentional information disclosure from the product database.
0