CVE-2023-43065
- EPSS 0.04%
- Published 23.10.2023 15:15:09
- Last modified 21.11.2024 08:23:39
Dell Unity prior to 5.3 contains a Cross-site scripting vulnerability. A low-privileged authenticated attacker can exploit these issues to obtain escalated privileges.
CVE-2022-29085
- EPSS 0.1%
- Published 02.06.2022 21:15:07
- Last modified 21.11.2024 06:58:27
Dell Unity, Dell UnityVSA, and Dell Unity XT versions prior to 5.2.0.0.5.173 contain a plain-text password storage vulnerability when certain off-array tools are run on the system. The credentials of a user with high privileges are stored in plain te...
- EPSS 1.43%
- Published 02.06.2022 21:15:07
- Last modified 21.11.2024 06:58:27
Dell Unity, Dell UnityVSA, and Dell Unity XT versions before 5.2.0.0.5.173 do not restrict excessive authentication attempts in Unisphere GUI. A remote unauthenticated attacker may potentially exploit this vulnerability to brute-force passwords and g...
CVE-2022-29091
- EPSS 0.35%
- Published 26.05.2022 16:15:08
- Last modified 21.11.2024 06:58:27
Dell Unity, Dell UnityVSA, and Dell UnityXT versions prior to 5.2.0.0.5.173 contain a Reflected Cross-Site Scripting Vulnerability in Unisphere GUI. An Unauthenticated Remote Attacker could potentially exploit this vulnerability, leading to the execu...
CVE-2021-21547
- EPSS 0.02%
- Published 30.04.2021 21:15:08
- Last modified 21.11.2024 05:48:34
Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerability when the Dell Upgrade Readiness Utility is run on the system. The credentials of the Unisphere Administrator are stored in plai...