Dell Unity vulnerabilities
64 known vulnerabilities affecting dell/unity.
Total CVEs
64
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH37MEDIUM22
Vulnerabilities
Page 4 of 4
CVE-2024-0169P4MEDIUMCVSS 5.4fixed in 5.42024-02-12
CVE-2024-0169 [MEDIUM] CWE-79 CVE-2024-0169: Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page
Dell Unity, version(s) 5.3 and prior, contain(s) an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
nvd
CVE-2023-43065P4MEDIUMCVSS 5.4vVersions prior to 5.3.0.0.5.1202023-10-23
CVE-2023-43065 [MEDIUM] CWE-79 CVE-2023-43065: Dell Unity prior to 5.3 contains a Cross-site scripting vulnerability. A low-privileged authenticat
Dell Unity prior to 5.3 contains a Cross-site scripting vulnerability. A low-privileged authenticated attacker can exploit these issues to obtain escalated privileges.
nvd
CVE-2024-22229P4MEDIUMCVSS 4.3fixed in 5.3.0.0.5.1202024-01-24
CVE-2024-22229 [MEDIUM] CWE-117 CVE-2024-22229: Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by a
Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by an authenticated attacker. An attacker could exploit this vulnerability to forge log entries, create false alarms, and inject malicious content into logs that compromise logs integrity. A malicious attacker could also prevent the product from logging inf
nvd
CVE-2014-3202P4MEDIUMCVSS 4.4≥ 0, < 7.2.0+14.04.20140416-0ubuntu12014-05-06
CVE-2014-3202 [MEDIUM] CVE-2014-3202: Unity before 7
Unity before 7.2.1 does not properly handle entry activation, which allows physically proximate attackers to bypass the lock screen by holding the ENTER key, which triggers the process to crash.
osv
← Previous4 / 4