Known vulnerabilities in PowerStore 9000X

Vendor: Dell
Software CPE: cpe:2.3:h:dell:powerstore_9000x:*:*:*:*:*:*:*:*
Total vulnerabilities: 45
Public exploits: 10
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting PowerStore 9000X PowerStore 9000X is affected by 45 known vulnerabilities: 9 high, 27 medium, 9 low Critical High Medium Low

Vulnerabilities (45)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU94710 - Resource Management Errors
CVE-2024-1737
CWE-399 Medium
No
No
- 24.07.2024 SB2024072415
SB2024072417
SB2024072418
and 73 more
#VU89712 - Stack-based buffer overflow
CVE-2024-33599
CWE-121 High
No
No
- 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 84 more
#VU89711 - NULL Pointer Dereference
CVE-2024-33600
CWE-476 Medium
No
No
- 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 83 more
#VU89710 - Allocation of Resources Without Limits or Throttling
CVE-2024-33601
CWE-770 Low
No
No
- 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 82 more
#VU89709 - Memory corruption
CVE-2024-33602
CWE-119 Medium
No
No
- 21.05.2024 SB2024052147
SB2024052148
SB2024052305
and 91 more
#VU88822 - Memory corruption
CVE-2024-2961
CWE-119 High
Available
Exploited
- 18.04.2024 SB2024041855
SB2024041856
SB2024041857
and 107 more
#VU88184 - Resource exhaustion
CVE-2023-45288
CWE-400 Medium
Available
No
- 05.04.2024 SB2024040533
SB2024040549
SB2024040551
and 187 more
#VU87208 - Out-of-bounds read
CVE-2023-48161
CWE-125 Medium
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2024060719
and 28 more
#VU87207 - Heap-based Buffer Overflow
CVE-2022-28506
CWE-122 High
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2022062452
and 9 more
#VU87206 - Missing release of memory after effective lifetime
CVE-2021-40633
CWE-401 Medium
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2024051326
and 11 more
#VU86383 - Resource exhaustion
CVE-2023-4408
CWE-400 Medium
No
No
- 13.02.2024 SB2024021329
SB2024021330
SB2024021347
and 82 more
#VU86382 - Reachable Assertion
CVE-2023-5517
CWE-617 Medium
No
No
- 13.02.2024 SB2024021329
SB2024021330
SB2024021347
and 43 more
#VU70385 - Deserialization of Untrusted Data
CVE-2022-1471
CWE-502 High
Available
No
- 15.12.2022 SB2022121539
SB2022121540
SB2022121928
and 124 more
#VU68307 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-42889
CWE-94 High
Available
Exploited
- 14.10.2022 SB2022101405
SB2022102709
SB2022110306
and 91 more
#VU66447 - Overly Permissive Cross-domain Whitelist
CVE-2022-1996
CWE-942 Low
No
No
- 12.08.2022 SB2022081216
SB2022081228
SB2022081229
and 65 more
#VU63343 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-29155
CWE-89 High
No
No
- 17.05.2022 SB2022051725
SB2022051731
SB2022051919
and 27 more
#VU61662 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-24302
CWE-362 Low
No
No
- 28.03.2022 SB2022032832
SB2022032837
SB2022033014
and 20 more
#VU19595 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2019-13990
CWE-611 Medium
No
No
- 01.08.2019 SB2019080104
SB2020042114
SB2020042350
and 26 more
#VU15559 - Improper Access Control
CVE-2018-1000805
CWE-284 High
No
No
- 24.10.2018 SB2018090720
SB2018102423
SB2018100403
and 14 more
#VU11301 - Improper Access Control
CVE-2018-8088
CWE-284 Low
No
No
- 28.03.2018 SB2018022112
SB2018032813
SB2018032817
and 27 more


Showing elements 1 - 20 out of 45