Home/Product/dell unityvsa operating environment
Product

dell unityvsa operating environment

10 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-22229
all versions
Dell Unity, versions prior to 5.4, contain a vulnerability whereby log messages can be spoofed by an authenticated attacker. An at
3.1LOW
CVE-2023-43082
< 5.3.0.0.5.120
Dell Unity prior to 5.3 contains a 'man in the middle' vulnerability in the vmadapter component. If a customer has a certificate s
8.6HIGH
CVE-2023-43067
< 5.3.0.0.5.120
Dell Unity prior to 5.3 contains an XML External Entity injection vulnerability. An XXE attack could potentially exploit this vuln
4.9MEDIUM
CVE-2023-43066
< 5.3.0.0.5.120
Dell Unity prior to 5.3 contains a Restricted Shell Bypass vulnerability. This could allow an authenticated, local attacker to exp
5.1MEDIUM
CVE-2023-43074
< 5.3.0.0.5.120
Dell Unity 5.3 contain(s) an Arbitrary File Creation vulnerability. A remote unauthenticated attacker could potentially exploit th
5.2MEDIUM
CVE-2023-43065
< 5.3.0.0.5.120
Dell Unity prior to 5.3 contains a Cross-site scripting vulnerability. A low-privileged authenticated attacker can exploit these i
5.5MEDIUM
CVE-2022-29085
< 5.2.0.0.5.173
Dell Unity, Dell UnityVSA, and Dell Unity XT versions prior to 5.2.0.0.5.173 contain a plain-text password storage vulnerability w
6.4MEDIUM
CVE-2022-29084
< 5.2.0.0.5.173
Dell Unity, Dell UnityVSA, and Dell Unity XT versions before 5.2.0.0.5.173 do not restrict excessive authentication attempts in Un
8.1HIGH
CVE-2022-29091
< 5.2.0.0.5.173
Dell Unity, Dell UnityVSA, and Dell UnityXT versions prior to 5.2.0.0.5.173 contain a Reflected Cross-Site Scripting Vulnerability
5.3MEDIUM
CVE-2021-21547
< 5.0.7.0.5.008
Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerability when th
6.4MEDIUM
threatengine.sh