VYPR

VNX2 for File

by Dell

CVEs (9)

  • CVE-2021-36294CriJan 25, 2022
    risk 0.64cvss 9.8epss 0.02

    Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability. A remote unauthenticated attacker may exploit this vulnerability by forging a cookie to login as any user.

  • CVE-2021-36288HigApr 8, 2022
    risk 0.56cvss 8.6epss 0.01

    Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files

  • CVE-2021-36289HigJan 25, 2022
    risk 0.51cvss 7.8epss 0.00

    Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensitive information and use it.

  • CVE-2019-3704HigFeb 7, 2019
    risk 0.51cvss 7.8epss 0.01

    VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability. Due to inadequate restriction configured in sudores, a local authenticated malicious user could potentially execute arbitrary OS commands as root by…

  • CVE-2021-36287HigApr 8, 2022
    risk 0.48cvss 7.3epss 0.03

    Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the system.

  • CVE-2021-36296HigJan 25, 2022
    risk 0.47cvss 7.2epss 0.03

    Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.

  • CVE-2021-36295HigJan 25, 2022
    risk 0.47cvss 7.2epss 0.03

    Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.

  • CVE-2021-36293MedApr 8, 2022
    risk 0.42cvss 6.4epss 0.00

    Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain elevated privileges.

  • CVE-2021-36290MedApr 8, 2022
    risk 0.42cvss 6.4epss 0.00

    Dell VNX2 for File version 8.1.21.266 and earlier, contain a privilege escalation vulnerability. A local malicious admin may potentially exploit vulnerability and gain privileges.