Known vulnerabilities in EMC Cloud Tiering Appliance - page 27

Vendor: Dell
Software CPE: cpe:2.3:a:dell:emc_cloud_tiering_appliance:*:*:*:*:*:*:*:*
Total vulnerabilities: 864
Public exploits: 40
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting EMC Cloud Tiering Appliance EMC Cloud Tiering Appliance is affected by 864 known vulnerabilities: 1 critical, 110 high, 168 medium, 585 low Critical High Medium Low

Vulnerabilities (864)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU78064 - Use After Free
CVE-2023-3159
CWE-416 Low
No
No
13.2.0.2.24 11.07.2023 SB2023071148
SB2023071152
SB2023071153
and 29 more
#VU78063 - NULL Pointer Dereference
CVE-2023-3358
CWE-476 Low
No
No
13.2.0.2.24 11.07.2023 SB2023071147
SB2023071151
SB2023071152
and 31 more
#VU78008 - Out-of-bounds read
CVE-2023-3268
CWE-125 Low
No
No
13.2.0.2.24 06.07.2023 SB2023070626
SB2023070629
SB2023071152
and 67 more
#VU77957 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-35823
CWE-362 Low
No
No
13.2.0.2.24 04.07.2023 SB2023070443
SB2023070447
SB2023071287
and 51 more
#VU77956 - Incorrect Calculation
CVE-2023-3161
CWE-682 Low
No
No
13.2.0.2.24 04.07.2023 SB2023070442
SB2023070447
SB2023071152
and 56 more
#VU77502 - Out-of-bounds write
CVE-2023-35788
CWE-787 Low
No
No
13.2.0.2.24 19.06.2023 SB2023061905
SB2023062942
SB2023062969
and 103 more
#VU75996 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-30772
CWE-362 Low
No
No
13.2.0.2.24 10.05.2023 SB2023051050
SB2023051052
SB2023051053
and 42 more
#VU68897 - Resource exhaustion
CVE-2022-32149
CWE-400 Medium
No
No
13.2.0.2.24 01.11.2022 SB2022110139
SB2022110140
SB2022110142
and 68 more
#VU68557 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-35957
CWE-288 Low
No
No
13.2.0.2.24 20.10.2022 SB2022092614
SB2022102094
SB2023050969
and 16 more
#VU68390 - Resource exhaustion
CVE-2022-41715
CWE-400 Medium
No
No
13.2.0.2.24 18.10.2022 SB2022101833
SB2022101834
SB2022102005
and 113 more
#VU67646 - Permissions, Privileges, and Access Controls
CVE-2022-36062
CWE-264 Medium
No
No
13.2.0.2.24 26.09.2022 SB2022092614
SB2022102094
SB2023062230
and 10 more
#VU67396 - Improper input validation
CVE-2022-27664
CWE-20 Medium
No
No
13.2.0.2.24 15.09.2022 SB2022091520
SB2022091521
SB2022092144
and 127 more
#VU65355 - Incorrect Regular Expression
CVE-2020-7753
CWE-185 Medium
No
No
13.2.0.2.24 15.07.2022 SB2020102724
SB2022071510
SB2023062230
and 12 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
13.2.0.2.24 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
13.2.0.2.24 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU64034 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-3918
CWE-94 High
No
No
13.2.0.2.24 07.06.2022 SB2021111302
SB2022060836
SB2022071504
and 45 more
#VU62361 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-43138
CWE-94 Medium
No
No
13.2.0.2.24 15.04.2022 SB2022041532
SB2022041533
SB2022062103
and 33 more
#VU61669 - Exposure of sensitive information to an unauthorized actor
CVE-2022-0155
CWE-200 Low
No
No
13.2.0.2.24 28.03.2022 SB2022032840
SB2022032843
SB2022071505
and 32 more
#VU57967 - Improper input validation
CVE-2021-3807
CWE-20 Medium
No
No
13.2.0.2.24 05.11.2021 SB2021110513
SB2021112603
SB2022042257
and 51 more
#VU56240 - Memory corruption
CVE-2021-29650
CWE-119 Low
No
No
13.2.0.2.24 01.09.2021 SB2021033033
SB2021090127
SB2021090128
and 44 more


Showing elements 521 - 540 out of 864