Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dell elastic cloud storage vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2017-8021
EMC Elastic Cloud Storage (ECS) prior to 3.1 is affected by an undocumented account vulnerability that could potentially be leveraged by malicious users to compromise the affected system.
Dell Elastic Cloud Storage
7.5
CVSSv2
CVE-2019-3766
Dell EMC ECS versions before 3.4.0.0 contain an improper restriction of excessive authentication attempts vulnerability. An unauthenticated remote attacker may potentially perform a password brute-force attack to gain access to the targeted accounts.
Dell Emc Elastic Cloud Storage
7.5
CVSSv2
CVE-2018-11052
Dell EMC ECS versions 3.2.0.0 and 3.2.0.1 contain an authentication bypass vulnerability. A remote unauthenticated attacker could exploit this vulnerability to read and modify S3 objects by supplying specially crafted S3 requests.
Dellemc Elastic Cloud Storage 3.2.0.1
Dellemc Elastic Cloud Storage 3.2.0.0
5
CVSSv2
CVE-2020-5386
Dell EMC ECS, versions before 3.5, contains an Exposure of Resource vulnerability. A remote unauthenticated attacker can access the list of DT (Directory Table) objects of all internally running services and gain knowledge of sensitive data of the system.
Dell Emc Elastic Cloud Storage
3.5
CVSSv2
CVE-2020-5317
Dell EMC ECS versions before 3.4.0.1 contain an XSS vulnerability. A remote authenticated malicious user could exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers...
Dell Emc Elastic Cloud Storage
NA
CVE-2023-25934
DELL ECS before 3.8.0.2 contains an improper verification of cryptographic signature vulnerability. A network attacker with an ability to intercept the request could potentially exploit this vulnerability to modify the body data of the request.
Dell Elastic Cloud Storage
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
man-in-the-middle
CVE-2024-34558
CVE-2024-32674
CVE-2024-34351
XPath injection
CVE-2023-45866
CVE-2024-25528
CVE-2024-25517
path traversal
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started