Dell Vnx Control Station vulnerabilities

4 known vulnerabilities affecting dell/vnx_control_station.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH3

Vulnerabilities

Page 1 of 1
CVE-2021-36294CRITICALCVSS 9.8≥ unspecified, < TBD2022-01-25
CVE-2021-36294 [CRITICAL] CWE-331 CVE-2021-36294: Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerabilit Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability. A remote unauthenticated attacker may exploit this vulnerability by forging a cookie to login as any user.
cvelistv5nvd
CVE-2021-36295HIGHCVSS 7.2≥ unspecified, < TBD2022-01-25
CVE-2021-36295 [HIGH] CWE-78 CVE-2021-36295: Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code executio Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.
cvelistv5nvd
CVE-2021-36296HIGHCVSS 7.2≥ unspecified, < TBD2022-01-25
CVE-2021-36296 [HIGH] CWE-78 CVE-2021-36296: Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code executio Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulnerability to execute commands on the system.
cvelistv5nvd
CVE-2021-36289HIGHCVSS 7.8≥ unspecified, < TBD2022-01-25
CVE-2021-36289 [HIGH] CWE-532 CVE-2021-36289: Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vu Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensitive information and use it.
cvelistv5nvd