CVE-2025-22476
- EPSS 0.11%
- Published 06.05.2025 16:08:47
- Last modified 07.05.2025 14:13:20
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with adjacent network access could potentially ...
CVE-2025-22477
- EPSS 0.07%
- Published 06.05.2025 16:03:29
- Last modified 13.05.2025 20:17:36
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Elevation of privil...
CVE-2025-22478
- EPSS 0.03%
- Published 06.05.2025 15:55:03
- Last modified 13.05.2025 20:17:50
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Restriction of XML External Entity Reference vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, ...
CVE-2025-22479
- EPSS 0.02%
- Published 06.05.2025 15:46:45
- Last modified 13.05.2025 20:18:11
Dell Storage Center - Dell Storage Manager, version(s) 20.0.21, contain(s) an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability. An unauthenticated attacker with adjacent network access could potentially exp...
CVE-2025-23379
- EPSS 0.03%
- Published 06.05.2025 15:25:06
- Last modified 13.05.2025 20:18:55
Dell Storage Center - Dell Storage Manager, version(s) 21.0.20, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. An unauthenticated attacker with adjacent network access could potential...
CVE-2017-14384
- EPSS 4.6%
- Published 16.03.2018 20:29:00
- Last modified 21.11.2024 03:12:40
In Dell Storage Manager versions earlier than 16.3.20, the EMConfigMigration service is affected by a directory traversal vulnerability. A remote malicious user could potentially exploit this vulnerability to read unauthorized files by supplying spec...
CVE-2017-14374
- EPSS 0.71%
- Published 06.12.2017 00:29:00
- Last modified 20.04.2025 01:37:25
The SMI-S service in Dell Storage Manager versions earlier than 16.3.20 (aka 2016 R3.20) is protected using a hard-coded password. A remote user with the knowledge of the password might potentially disable the SMI-S service via HTTP requests, affecti...