Vulnerabilities (CVE)

Filtered by vendor Dell Subscribe
Filtered by product Emc Elastic Cloud Storage
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-5386 1 Dell 1 Emc Elastic Cloud Storage 2023-12-10 5.0 MEDIUM 7.5 HIGH
Dell EMC ECS, versions prior to 3.5, contains an Exposure of Resource vulnerability. A remote unauthenticated attacker can access the list of DT (Directory Table) objects of all internally running services and gain knowledge of sensitive data of the system.
CVE-2019-3766 1 Dell 1 Emc Elastic Cloud Storage 2023-12-10 7.5 HIGH 9.8 CRITICAL
Dell EMC ECS versions prior to 3.4.0.0 contain an improper restriction of excessive authentication attempts vulnerability. An unauthenticated remote attacker may potentially perform a password brute-force attack to gain access to the targeted accounts.
CVE-2020-5317 1 Dell 1 Emc Elastic Cloud Storage 2023-12-10 3.5 LOW 4.8 MEDIUM
Dell EMC ECS versions prior to 3.4.0.1 contain an XSS vulnerability. A remote authenticated malicious user could exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable web application.