CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

dell

powermax_os

16 known vulnerabilities · sorted by CVSS score

CVE-2021-21531
HIGH8.1

Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerability. A local authenticated malicious user with monitor role may exploit this vulnerability to perform unauthorized actions.

dell / solutions_enabler+8
Network
Published Apr 30, 2021
CVE-2021-36339
HIGH7.8

The Dell EMC Virtual Appliances before 9.2.2.2 contain undocumented user accounts. A local malicious user may potentially exploit this vulnerability to get privileged access to the virtual appliance.

dell / solutions_enabler+12
Local
Published Jan 21, 2022
CVE-2023-48660
HIGH7.5

Dell vApp Manger, versions prior to 9.2.4.x contain an arbitrary file read vulnerability. A remote attacker could potentially exploit this vulnerability to read arbitrary files from the target system.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023
CVE-2023-48671
HIGH7.5

Dell vApp Manager, versions prior to 9.2.4.x contain an information disclosure vulnerability. A remote attacker could potentially exploit this vulnerability leading to obtain sensitive information that may aid in further attacks.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023
CVE-2020-5367
HIGH7.4

Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim's data in transit.

dell / emc_unisphere_for_powermax+2
Local
Published Jun 23, 2020
CVE-2021-21548
HIGH7.4

Dell EMC Unisphere for PowerMax versions before 9.1.0.27, Dell EMC Unisphere for PowerMax Virtual Appliance versions before 9.1.0.27, and PowerMax OS Release 5978 contain an improper certificate validation vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to carry out a man-in-the-middle attack by supplying a crafted certificate and intercepting the victim's traffic to view or modify a victim’s data in transit.

dell / emc_unisphere_for_powermax+2
Local
Published Mar 17, 2023
CVE-2023-48663
HIGH7.2

Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023
CVE-2023-48662
HIGH7.2

Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023
CVE-2023-48664
HIGH7.2

Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023
CVE-2023-48665
HIGH7.2

Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023
CVE-2022-45103
MEDIUM6.5

Dell Unisphere for PowerMax vApp, VASA Provider vApp, and Solution Enabler vApp version 9.2.3.x contain an information disclosure vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to read arbitrary files on the underlying file system.

dell / emc_solutions_enabler_virtual_appliance+10
Network
Published Jan 18, 2023
CVE-2020-5345
MEDIUM6.4

Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an authorization bypass vulnerability. An authenticated malicious user may potentially execute commands to alter or stop database statistics.

dell / emc_unisphere_for_powermax+2
Network
Published Jun 23, 2020
CVE-2021-36338
MEDIUM6.3

Unisphere for PowerMax versions prior to 9.2.2.2 contains a privilege escalation vulnerability. An adjacent malicious user could potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to. CVE-2022-31233 addresses the partial fix in CVE-2021-36338.

dell / solutions_enabler+12
Adjacent
Published Jan 21, 2022
CVE-2020-35170
MEDIUM6.3

Dell EMC Unisphere for PowerMax versions prior to 9.1.0.9, Dell EMC Unisphere for PowerMax versions prior to 9.0.2.16, and Dell EMC PowerMax OS 5978.221.221 and 5978.479.479 contain a Cross-Site Scripting (XSS) vulnerability. An authenticated malicious user may potentially exploit this vulnerability to inject javascript code and affect other authenticated users’ sessions.

dell / unisphere+3
Network
Published Jan 5, 2021
CVE-2022-31233
MEDIUM6.3

Unisphere for PowerMax versions before 9.2.3.15 contain a privilege escalation vulnerability. An adjacent malicious user may potentially exploit this vulnerability to escalate their privileges and access functionalities they do not have access to.

dell / evasa_provider_virtual_appliance+7
Adjacent
Published Aug 31, 2022
CVE-2023-48661
MEDIUM4.9

Dell vApp Manager, versions prior to 9.2.4.x contain an arbitrary file read vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability to read arbitrary files from the target system.

dell / solutions_enabler_virtual_appliance+2
Network
Published Dec 14, 2023