Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Bugbounty2K20

#19189of 53,633
13.9Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2022-19414
4.9
2022-06-24
Dell · Dell Wms · CVE-2022-29097
**Name of the Vulnerable Software and Affected Versions** Dell WMS versions 3.6.1 and below **Description** The issue allows a remote attacker to potentially exploit a Path Traversal vulnerability in the Device API, gaining unauthorized read access to files stored on the server filesystem with the privileges of the running web application. **Recommendations** For Dell WMS versions 3.6.1 and below, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-15883
9.0
2022-04-01
Dell · Dell Wyse Management Suite · CVE-2022-23155
**Name of the Vulnerable Software and Affected Versions** Dell Wyse Management Suite versions 2.0 through 3.5.2 **Description** The issue is related to an unrestricted file upload vulnerability. A malicious user with admin privileges can exploit this vulnerability to execute arbitrary code on the system. **Recommendations** For Dell Wyse Management Suite versions 2.0 through 3.5.2, consider restricting admin privileges and access to file upload functionality until a patch is available. As a temporary workaround, consider disabling file upload functionality to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.