Show filters
1,219 Total Results
Displaying 351-360 of 1,219
Sort by:
Attacker Value
Unknown
CVE-2023-43071
Disclosure Date: October 05, 2023 (last updated February 25, 2025)
Dell SmartFabric Storage Software v1.4 (and earlier) contains possible vulnerabilities for HTML injection or CVS formula injection which might escalate to cross-site scripting attacks in HTML pages in the GUI. A remote authenticated attacker could potentially exploit these issues, leading to various injection type attacks.
0
Attacker Value
Unknown
CVE-2023-43070
Disclosure Date: October 05, 2023 (last updated February 25, 2025)
Dell SmartFabric Storage Software v1.4 (and earlier) contains a Path Traversal Vulnerability in the HTTP interface. A remote authenticated attacker could potentially exploit this vulnerability, leading to modify or write arbitrary files to arbitrary locations in the license container.
0
Attacker Value
Unknown
CVE-2023-43069
Disclosure Date: October 05, 2023 (last updated February 25, 2025)
Dell SmartFabric Storage Software v1.4 (and earlier) contain(s) an OS Command Injection Vulnerability in the CLI. An authenticated local attacker could potentially exploit this vulnerability, leading to possible injection of parameters to curl or docker.
0
Attacker Value
Unknown
CVE-2023-43068
Disclosure Date: October 05, 2023 (last updated February 25, 2025)
Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the restricted shell in SSH. An authenticated remote attacker could potentially exploit this vulnerability, leading to execute arbitrary commands.
0
Attacker Value
Unknown
CVE-2023-32477
Disclosure Date: September 29, 2023 (last updated February 25, 2025)
Dell Common Event Enabler 8.9.8.2 for Windows and prior, contain an improper access control vulnerability. A local low-privileged malicious user may potentially exploit this vulnerability to gain elevated privileges.
0
Attacker Value
Unknown
CVE-2023-4129
Disclosure Date: September 27, 2023 (last updated February 25, 2025)
Dell Data Protection Central, version 19.9, contains an Inadequate Encryption Strength Vulnerability. An unauthenticated network attacker could potentially exploit this vulnerability, allowing an attacker to recover plaintext from a block of ciphertext.
0
Attacker Value
Unknown
CVE-2023-28055
Disclosure Date: September 27, 2023 (last updated February 25, 2025)
Dell NetWorker, Version 19.7 has an improper authorization vulnerability in the NetWorker client. An unauthenticated attacker within the same network could potentially exploit this by manipulating a command leading to gain of complete access to the server file further resulting in information leaks, denial of service, and arbitrary code execution. Dell recommends customers to upgrade at the earliest opportunity.
0
Attacker Value
Unknown
CVE-2023-39252
Disclosure Date: September 21, 2023 (last updated February 25, 2025)
Dell SCG Policy Manager 5.16.00.14 contains a broken cryptographic algorithm vulnerability. A remote unauthenticated attacker may potentially exploit this vulnerability by performing MitM attacks and let attackers obtain sensitive information.
0
Attacker Value
Unknown
CVE-2023-32461
Disclosure Date: September 15, 2023 (last updated February 25, 2025)
Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, leading to corrupt memory and potentially escalate privileges.
0
Attacker Value
Unknown
CVE-2023-3039
Disclosure Date: September 12, 2023 (last updated February 25, 2025)
SD ROM Utility, versions prior to 1.0.2.0 contain an Improper Access Control vulnerability. A low-privileged malicious user may potentially exploit this vulnerability to perform arbitrary code execution with limited access.
0