Latest CVE Feed
-
7.8
HIGHCVE-2021-36311
Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability. Any local malicious user with networker user privileges may exploit this vulnerability to upload malicious file to unauthorized locations and execute it.... Read more
- EPSS Score: %0.04
- Published: Nov. 23, 2021
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2021-36310
Dell Networking OS10, versions 10.4.3.x, 10.5.0.x, 10.5.1.x & 10.5.2.x, contain an uncontrolled resource consumption flaw in its API service. A high-privileged API user may potentially exploit this vulnerability, leading to a denial of service.... Read more
Affected Products : networking_os10- EPSS Score: %0.32
- Published: Nov. 20, 2021
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2021-36309
Dell Enterprise SONiC OS, versions 3.3.0 and earlier, contains a sensitive information disclosure vulnerability. An authenticated malicious user with access to the system may use the TACACS\Radius credentials stored to read sensitive information and use i... Read more
- EPSS Score: %0.27
- Published: Oct. 01, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-36308
Networking OS10, versions prior to October 2021 with Smart Fabric Services enabled, contains an authentication bypass vulnerability. A remote unauthenticated attacker could exploit this vulnerability to gain access and perform actions on the affected syst... Read more
Affected Products : networking_os10- EPSS Score: %1.72
- Published: Nov. 20, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2021-36307
Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains a privilege escalation vulnerability. A malicious low privileged user with specific access to the API could potentially exploit this vulnerability to gain admin privileges... Read more
Affected Products : networking_os10- EPSS Score: %0.23
- Published: Nov. 20, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-36306
Networking OS10, versions prior to October 2021 with RESTCONF API enabled, contains an authentication bypass vulnerability. A remote unauthenticated attacker could exploit this vulnerability to gain access and perform actions on the affected system.... Read more
Affected Products : networking_os10- EPSS Score: %1.72
- Published: Nov. 20, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2021-36305
Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling. An authenticated user of SMB on a cluster with CA could potentially exploit this vulnerability, leading to a denial of service over SMB.... Read more
- EPSS Score: %0.24
- Published: Nov. 12, 2021
- Modified: Nov. 21, 2024
-
9.9
CRITICALCVE-2021-36302
All Dell EMC Integrated System for Microsoft Azure Stack Hub versions contain a privilege escalation vulnerability. A remote malicious user with standard level JEA credentials may potentially exploit this vulnerability to elevate privileges and take over ... Read more
- EPSS Score: %0.24
- Published: Feb. 09, 2022
- Modified: Nov. 21, 2024
-
7.2
HIGHCVE-2021-36301
Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Racadm. An authenticated remote attacker may potentially exploit this vulnerability to control process execution and gain access to the und... Read more
- EPSS Score: %13.33
- Published: Nov. 23, 2021
- Modified: Nov. 21, 2024
-
8.2
HIGHCVE-2021-36300
iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability by sending a specially crafted malicious request to crash the webserver or cause informat... Read more
Affected Products : emc_idrac9_firmware- EPSS Score: %5.94
- Published: Nov. 23, 2021
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2021-36299
Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability. A remote authenticated malicious user with low privileges may potentially exploit this vulnerability to cause information disclosure ... Read more
Affected Products : emc_idrac9_firmware- EPSS Score: %1.92
- Published: Nov. 23, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-36298
Dell EMC InsightIQ, versions prior to 4.1.4, contain risky cryptographic algorithms in the SSH component. A remote unauthenticated attacker could potentially exploit this vulnerability leading to authentication bypass and remote takeover of the InsightIQ.... Read more
- EPSS Score: %0.20
- Published: Oct. 01, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-36297
SupportAssist Client version 3.8 and 3.9 contains an Untrusted search path vulnerability that allows attackers to load an arbitrary .dll file via .dll planting/hijacking, only by a separate administrative action that is not a default part of the SOSInstal... Read more
Affected Products : supportassist_for_home_pcs- EPSS Score: %0.05
- Published: Sep. 28, 2021
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-36296
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.... Read more
- EPSS Score: %1.36
- Published: Jan. 25, 2022
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2021-36295
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.... Read more
- EPSS Score: %1.36
- Published: Jan. 25, 2022
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-36294
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability. A remote unauthenticated attacker may exploit this vulnerability by forging a cookie to login as any user.... Read more
- EPSS Score: %0.24
- Published: Jan. 25, 2022
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-36293
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain elevated privileges.... Read more
- EPSS Score: %0.13
- Published: Apr. 08, 2022
- Modified: Nov. 21, 2024
-
6.7
MEDIUMCVE-2021-36290
Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain privileges.... Read more
- EPSS Score: %0.11
- Published: Apr. 08, 2022
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-36289
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensitive information and use it.... Read more
- EPSS Score: %0.12
- Published: Jan. 25, 2022
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2021-36288
Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files... Read more
- EPSS Score: %0.67
- Published: Apr. 08, 2022
- Modified: Nov. 21, 2024