Emc Unity Operating Environment
Vendor:
First CVE: Apr 30, 2018 · Active for 8 years
24
Total CVEs
More Total CVEs than 95% of tracked products
4.0
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Emc Unity Operating Environment over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 30, 2018
8 years ago
Most Recent CVE
Feb 14, 2023
1,256 days ago
CVE Severity & Scoring
Emc Unity Operating Environment24 CVEs
54%
29%
17%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local11 (45.8%)
Network13 (54.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low23 (95.8%)
High1 (4.2%)
Unknown0 (0.0%)
User Interaction
None22 (91.7%)
Unknown0 (0.0%)
Required2 (8.3%)
Privileges Required
Low5 (20.8%)
High11 (45.8%)
None8 (33.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (24 CVEs).
24 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-36294CRITICAL Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authentication bypass vulnerability. A remote unauthenticated attacker may exploit this vulnerability by forging a | Jan 25, 2022 | 9.8 | 32 | NO | NO |
CVE-2021-36287CRITICAL Dell VNX2 for file version 8.1.21.266 and earlier, contain an unauthenticated remote code execution vulnerability which may lead unauthenticated users to execute commands on the sy | Apr 8, 2022 | 9.8 | 31 | NO | NO |
CVE-2021-36288CRITICAL Dell VNX2 for File version 8.1.21.266 and earlier, contain a path traversal vulnerability which may lead unauthenticated users to read/write restricted files | Apr 8, 2022 | 9.1 | 29 | NO | NO |
CVE-2018-1183CRITICAL In Dell EMC Unisphere for VMAX Virtual Appliance versions prior to 8.4.0.8, Dell EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.8, Dell EMC VASA Provider Virtual A | Apr 30, 2018 | 9.8 | 29 | NO | NO |
CVE-2021-36289HIGH Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability. A local malicious user may exploit this vulnerability to read sensi | Jan 25, 2022 | 7.8 | 26 | NO | NO |
CVE-2021-36296HIGH Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulner | Jan 25, 2022 | 7.2 | 25 | NO | NO |
CVE-2021-36295HIGH Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A remote malicious user with privileges may exploit this vulner | Jan 25, 2022 | 7.2 | 25 | NO | NO |
CVE-2018-1239HIGH Dell EMC Unity Operating Environment (OE) versions prior to 4.3.0.1522077968 are affected by multiple OS command injection vulnerabilities. A remote application admin user could po | May 8, 2018 | 7.2 | 25 | NO | NO |
CVE-2019-3741HIGH Dell EMC Unity and UnityVSA versions prior to 5.0.0.0.5.116 contain a plain-text password storage vulnerability. A Unisphere user’s (including the admin privilege user) password is | Jul 18, 2019 | 7.8 | 24 | NO | NO |
CVE-2018-11064HIGH Dell EMC Unity OE versions 4.3.0.x and 4.3.1.x and UnityVSA OE versions 4.3.0.x and 4.3.1.x contains an Incorrect File Permissions vulnerability. A locally authenticated malicious | Oct 5, 2018 | 7.8 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (24 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (24 CVEs).
Media Mentions
Signals from CVEs in this product scope (24 CVEs).
Top CNAs Publishing CVEs For Emc Unity Operating Environment
Top CWEs
Versions
No cataloged versions.