Dell Security Vulnerabilities (CVEs)

Track 469 security vulnerabilities affecting Dell products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

40 Critical
283 High
143 Medium
3 Low
🔔 Get Alerts for Dell
CVE-2025-23383 7.8

This OS command injection vulnerability in Dell Unity storage systems allows low-privileged local attackers to execute arbitrary commands with elevate...

Mar 28, 2025
CVE-2025-24377 7.8

This CVE describes an OS command injection vulnerability in Dell Unity storage systems. A low-privileged attacker with local access can execute arbitr...

Mar 28, 2025
CVE-2025-24378 7.8

This CVE describes an OS command injection vulnerability in Dell Unity storage systems. A low-privileged attacker with local access can execute arbitr...

Mar 28, 2025
CVE-2025-24379 7.8

This OS command injection vulnerability in Dell Unity storage systems allows attackers with local access to execute arbitrary commands with elevated p...

Mar 28, 2025
CVE-2025-24380 7.8

This vulnerability allows a low-privileged attacker with local access to execute arbitrary operating system commands on Dell Unity systems, potentiall...

Mar 28, 2025
CVE-2024-49601 7.3

CVE-2024-49601 is an OS command injection vulnerability in Dell Unity storage systems that allows unauthenticated remote attackers to execute arbitrar...

Mar 28, 2025
CVE-2025-22398 9.8

This critical vulnerability allows unauthenticated remote attackers to execute arbitrary operating system commands as root on Dell Unity storage syste...

Mar 28, 2025
CVE-2025-24383 9.1

Dell Unity storage systems running version 5.4 or earlier contain an OS command injection vulnerability that allows unauthenticated remote attackers t...

Mar 28, 2025
CVE-2024-49563 7.8

This CVE describes an OS command injection vulnerability in Dell Unity storage systems. A low-privileged attacker with local access can execute arbitr...

Mar 28, 2025
CVE-2024-49564 7.8

This CVE describes an OS command injection vulnerability in Dell Unity storage systems. A low-privileged attacker with local access can execute arbitr...

Mar 28, 2025
CVE-2024-49565 7.8

This OS command injection vulnerability in Dell Unity storage systems allows low-privileged local attackers to execute arbitrary commands with elevate...

Mar 28, 2025
CVE-2025-26336 8.3

A stack-based buffer overflow vulnerability in Dell Chassis Management Controller firmware allows unauthenticated remote attackers to execute arbitrar...

Mar 21, 2025
CVE-2025-23382 5.5

Dell Secure Connect Gateway (SCG) 5.0 Appliance versions 5.26 expose sensitive system information to unauthorized actors. A high-privileged attacker w...

Mar 19, 2025
CVE-2025-27688 7.8

Dell ThinOS 2408 and earlier versions have an improper permissions vulnerability that allows local low-privileged attackers to elevate their privilege...

Mar 18, 2025
CVE-2025-22473 7.8

This vulnerability allows a low-privileged attacker with local access to Dell SmartFabric OS10 switches to execute arbitrary code via command injectio...

Mar 17, 2025
CVE-2024-49559 8.8

Dell SmartFabric OS10 Software contains a default password vulnerability that allows low-privileged attackers with remote access to gain unauthorized ...

Mar 17, 2025
CVE-2024-49561 7.8

Dell SmartFabric OS10 Software contains an incorrect privilege assignment vulnerability (CWE-266) that allows local low-privileged attackers to elevat...

Mar 17, 2025
CVE-2025-22472 7.8

This CVE describes a command injection vulnerability in Dell SmartFabric OS10 Software that allows low-privileged local attackers to execute arbitrary...

Mar 17, 2025
CVE-2024-48015 6.7

This CVE describes a command injection vulnerability in Dell SmartFabric OS10 Software that allows high-privileged attackers with local access to exec...

Mar 17, 2025
CVE-2024-48828 5.5

Dell SmartFabric OS10 Software contains an improper privilege management vulnerability (CWE-269) where a low-privileged attacker with local access cou...

Mar 17, 2025
CVE-2024-48831 8.4

Dell SmartFabric OS10 Software versions 10.5.6.x contain a hard-coded password vulnerability. An unauthenticated attacker with local access could expl...

Mar 17, 2025
CVE-2025-22474 6.8

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Dell SmartFabric OS10 Software. A high-privileged attacker with remote access...

Mar 17, 2025
CVE-2024-48830 7.8

This CVE describes a command injection vulnerability in Dell SmartFabric OS10 Software that allows low-privileged local attackers to execute arbitrary...

Mar 17, 2025
CVE-2024-48013 8.8

Dell SmartFabric OS10 Software contains an execution with unnecessary privileges vulnerability that allows low-privileged remote attackers to elevate ...

Mar 17, 2025
CVE-2025-21104 4.3

Dell NetWorker Management Console versions prior to 19.11.0.4 and version 19.12 contain an open redirect vulnerability that allows unauthenticated att...

Mar 13, 2025
CVE-2025-26331 7.8

This CVE describes a command injection vulnerability in Dell ThinOS versions 2411 and earlier. A low-privileged attacker with local access can execute...

Mar 7, 2025
CVE-2025-21106 5.5

Dell Recover Point for Virtual Machines 6.0.X has weak file system permissions that allow local low-privileged attackers to access non-sensitive resou...

Feb 20, 2025
CVE-2024-52541 8.2

Dell Client Platform BIOS contains a weak authentication vulnerability that allows high-privileged attackers with local access to elevate their privil...

Feb 19, 2025
CVE-2025-22480 7.0

Dell SupportAssist OS Recovery versions before 5.5.13.1 contain a symbolic link attack vulnerability that allows local low-privileged attackers to del...

Feb 13, 2025
CVE-2024-29171 5.9

Dell BSAFE SSL-J contains an improper certificate verification vulnerability that could allow a remote attacker to intercept or manipulate encrypted c...

Feb 12, 2025
CVE-2025-22399 7.9

Dell UCC Edge version 2.3.0 contains a blind Server-Side Request Forgery (SSRF) vulnerability in the Add Customer SFTP Server functionality. Unauthent...

Feb 11, 2025
CVE-2025-21117 6.6

Dell Avamar versions 19.4+ have an access token reuse vulnerability in the AUI (Avamar User Interface). A local attacker with low privileges could exp...

Feb 5, 2025
CVE-2024-53295 7.8

This vulnerability allows a local malicious user with low privileges on Dell PowerProtect DD systems to escalate their privileges through improper acc...

Feb 1, 2025
CVE-2024-51534 7.1

A local path traversal vulnerability in Dell PowerProtect DD allows low-privileged users to overwrite OS files, potentially causing denial of service....

Feb 1, 2025
CVE-2025-21107 7.8

This CVE describes an unquoted search path vulnerability in Dell NetWorker that allows local attackers with low privileges to execute arbitrary code. ...

Jan 30, 2025
CVE-2025-23374 8.0

Dell Networking Switches running Enterprise SONiC OS versions before 4.4.1 and 4.2.3 have a vulnerability where sensitive information can be inserted ...

Jan 30, 2025
CVE-2025-21101 6.6

Dell Display Manager versions before 2.3.2.20 contain a race condition vulnerability that allows a local malicious user to delete arbitrary files or f...

Jan 15, 2025
CVE-2025-21111 7.5

Dell VxRail versions 8.0.000 through 8.0.311 store passwords in plaintext, allowing high-privileged attackers with local access to read sensitive cred...

Jan 8, 2025
CVE-2025-21102 7.5

Dell VxRail versions 7.0.000 through 7.0.532 store passwords in plaintext, allowing a high-privileged attacker with local access to read sensitive cre...

Jan 8, 2025
CVE-2024-47239 6.5

Dell PowerScale OneFS versions 8.2.2.x through 9.9.0.0 contain an uncontrolled resource consumption vulnerability that allows remote low-privileged at...

Jan 8, 2025
CVE-2025-22395 8.2

Dell Update Package Framework versions before 22.01.02 contain a local privilege escalation vulnerability. A local low-privileged attacker can exploit...

Jan 7, 2025
CVE-2024-47475 5.0

Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.x have incorrect permissions on critical system resources. A local authenticated attacker could e...

Jan 6, 2025
CVE-2024-51540 8.1

An arithmetic overflow vulnerability in Dell ECS retention period handling allows authenticated users with bucket/object access to bypass retention po...

Dec 26, 2024
CVE-2024-52543 6.5

Dell NativeEdge version 2.1.0.0 contains a temporary file creation vulnerability with insecure permissions. A high-privileged attacker with local acce...

Dec 25, 2024
CVE-2024-53291 7.5

Dell NativeEdge version 2.1.0.0 contains a metadata exposure vulnerability that allows unauthenticated remote attackers to access sensitive informatio...

Dec 25, 2024
CVE-2024-47978 7.8

Dell NativeEdge version 2.1.0.0 contains an execution with unnecessary privileges vulnerability (CWE-250). A low-privileged attacker with local access...

Dec 25, 2024
CVE-2024-47480 7.8

Dell Inventory Collector Client versions before 12.7.0 have a path traversal vulnerability where low-privilege local attackers can exploit improper li...

Dec 18, 2024
CVE-2024-52542 4.4

Dell AppSync version 4.6.0.x contains a symbolic link following vulnerability that allows local low-privileged attackers to tamper with files by manip...

Dec 17, 2024
CVE-2024-28980 6.5

Dell RecoverPoint for VMs versions 6.0.x contain a broken cryptographic algorithm vulnerability in SSH that allows unauthenticated remote attackers to...

Dec 13, 2024
CVE-2024-48008 5.3

Dell RecoverPoint for Virtual Machines 6.0.x contains an OS command injection vulnerability that allows low-privileged remote attackers to execute arb...

Dec 13, 2024

Why Monitor Dell Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 469+ known vulnerabilities affecting Dell products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Dell packages in under 60 seconds. No agents required - completely agentless scanning that works across Dell deployments.

Free vulnerability database: Access detailed information about every Dell CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Dell CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Dell CVEs Free