Dell EMC Alert
3007Warning Date
Severity Level
Warning Number
Target Sector
28 July, 2022
● High
2022-5075
All
DELL EMC has released security updates to address several vulnerabilities in the following products:
- Dell AppSync
- PowerEdge Server
- Dell PowerEdge Server BIOS
- Dell PowerMax Embedded NAS
- Dell VxRail
The attacker could exploit the vulnerabilities and do the following:
- Denial of service attack (DoS)
- Cross-site scripting (XSS)
- Tauthorized disclosure of informationلT
The CERT team encourages users to review DELL EMC security advisory and apply the necessary updates:
- https://www.dell.com/support/kbdoc/en-us/000201907/dsa-2022-195-dell-appsync-security-update-for-multiple-vulnerabilities-in-embedded-service-enabler-ese-component-of-appsync
- https://www.dell.com/support/kbdoc/en-us/000196007/dsa-2022-036-poweredge-server-security-update-for-intel-february-2022-security-advisory-release
- https://www.dell.com/support/kbdoc/en-us/000198065/dsa-2022-088-dell-poweredge-server-bios-security-update-for-multiple-tianocore-edk2-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000199270/dsa-2022-127-dell-poweredge-server-bios-security-updates-for-intel-may-2022-security-advisories
- https://www.dell.com/support/kbdoc/en-us/000201919/dsa-2022-165-dell-emc-powermax-embedded-nas-security-update-for-multiple-security-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000201322/dsa-2022-175-dell-vxrail-security-update-for-multiple-third-party-component-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000200092/dsa-2022-136-dell-vxrail-security-update-for-multiple-third-party-component-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000198226/dsa-2022-084-dell-vxrail-security-update-for-multiple-third-party-component-vulnerabilities
- https://www.dell.com/support/kbdoc/en-us/000196707/dsa-2022-056-dell-emc-vxrail-security-update-for-multiple-third-party-component-vulnerabilities