Known vulnerabilities in EMC ECS - page 14

Vendor: Dell
Software: EMC ECS
Software CPE: cpe:2.3:a:dell:emc_elastic_cloud_storage:*:*:*:*:*:*:*:*
Total vulnerabilities: 279
Public exploits: 15
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting EMC ECS EMC ECS is affected by 279 known vulnerabilities: 2 critical, 51 high, 117 medium, 109 low Critical High Medium Low

Vulnerabilities (279)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64089 - Improper Authentication
CVE-2022-31813
CWE-287 Medium
No
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 49 more
#VU64088 - Out-of-bounds read
CVE-2022-30556
CWE-125 Medium
No
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 31 more
#VU64086 - Resource exhaustion
CVE-2022-30522
CWE-400 Medium
No
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061723
and 31 more
#VU64085 - Improper input validation
CVE-2022-29404
CWE-20 Medium
No
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 30 more
#VU64083 - Out-of-bounds read
CVE-2022-28615
CWE-125 Low
No
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 41 more
#VU64081 - Out-of-bounds read
CVE-2022-28614
CWE-125 Low
No
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 36 more
#VU64078 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-26377
CWE-444 Medium
Available
No
3.7.0.3 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 39 more
#VU64075 - Out-of-bounds write
CVE-2022-1304
CWE-787 Low
No
No
3.7.0.3 08.06.2022 SB2022060814
SB2022060815
SB2022060830
and 66 more
#VU63945 - Out-of-bounds read
CVE-2022-1586
CWE-125 Medium
No
No
3.7.0.3 02.06.2022 SB2022060210
SB2022071156
SB2022071217
and 71 more
#VU63343 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-29155
CWE-89 High
No
No
3.7.0.3 17.05.2022 SB2022051725
SB2022051731
SB2022051919
and 27 more
#VU62645 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2021-21580
CWE-74 Low
No
No
- 27.04.2022 SB2021080330
SB2022042707
SB2022111726
and 1 more
#VU62642 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-21579
CWE-601 Medium
No
No
- 27.04.2022 SB2021080331
SB2022042707
SB2021043024
and 2 more
#VU62639 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-21578
CWE-601 Medium
No
No
- 27.04.2022 SB2021080331
SB2022042707
SB2021043024
and 2 more
#VU62637 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-21577
CWE-79 Low
No
No
- 27.04.2022 SB2021080331
SB2022042707
SB2021043024
and 2 more
#VU62636 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-21576
CWE-79 Low
No
No
- 27.04.2022 SB2021080331
SB2022042707
SB2021043024
and 2 more
#VU62258 - Untrusted Search Path
CVE-2022-24765
CWE-426 Low
No
No
3.7.0.3 12.04.2022 SB2022041262
SB2022041264
SB2022041265
and 44 more
#VU62002 - Improper input validation
CVE-2022-1271
CWE-20 High
No
No
3.7.0.3 08.04.2022 SB2022040803
SB2022040804
SB2022040822
and 134 more
#VU52065 - Insufficient Verification of Data Authenticity
CVE-2021-3448
CWE-345 Medium
No
No
3.7.0.3 13.04.2021 SB2021041305
SB2021041306
SB2021052607
and 10 more
#VU21447 - Improper Restriction of Excessive Authentication Attempts
CVE-2019-3766
CWE-307 High
No
No
3.4.0.0 30.09.2019 SB2019093012


Showing elements 261 - 280 out of 279