Hybrid Client
Vendor:
First CVE: Apr 30, 2021 · Active for 5 years
10
Total CVEs
More Total CVEs than 89% of tracked products
3.3
Avg CVEs / Year
Higher CVE frequency than 84% of tracked products
6.0
Avg CVSS
Higher Avg CVSS than 23% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Hybrid Client over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 30, 2021
5 years ago
Most Recent CVE
Jul 20, 2023
1,104 days ago
CVE Severity & Scoring
Hybrid Client10 CVEs
20%
40%
40%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local6 (60.0%)
Network4 (40.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None10 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low6 (60.0%)
High2 (20.0%)
None2 (20.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-34432HIGH Dell Hybrid Client below 1.8 version contains a gedit vulnerability. A guest attacker could potentially exploit this vulnerability, allowing deletion of user and some system files | Oct 11, 2022 | 8.2 | 26 | NO | NO |
CVE-2021-21535HIGH Dell Hybrid Client versions prior to 1.5 contain a missing authentication for a critical function vulnerability. A local unauthenticated attacker may exploit this vulnerability in | Apr 30, 2021 | 7.8 | 25 | NO | NO |
CVE-2022-34429HIGH Dell Hybrid Client below 1.8 version contains a Zip Slip Vulnerability in UI. A guest privilege attacker could potentially exploit this vulnerability, leading to system files modif | Sep 30, 2022 | 7.1 | 24 | NO | NO |
CVE-2022-34431MEDIUM Dell Hybrid Client below 1.8 version contains a guest user profile corruption vulnerability. A WMS privilege attacker could potentially exploit this vulnerability, leading to DHC s | Oct 11, 2022 | 6.5 | 22 | NO | NO |
CVE-2022-34430HIGH Dell Hybrid Client below 1.8 version contains a Zip Bomb Vulnerability in UI. A guest privilege attacker could potentially exploit this vulnerability, leading to system files modif | Oct 11, 2022 | 7.5 | 19 | NO | NO |
CVE-2021-21537MEDIUM Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to view and exfiltr | Apr 30, 2021 | 5.5 | 19 | NO | NO |
CVE-2023-32476MEDIUM
Dell Hybrid Client version 2.0 contains a Sensitive Data Exposure vulnerability. An unauthenticated malicious user on the device can access hard coded secrets in javascript files. | Jul 20, 2023 | 5.5 | 18 | NO | NO |
CVE-2021-21536MEDIUM Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to register the cli | Apr 30, 2021 | 5.5 | 18 | NO | NO |
Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker may exploit this vulnerability in order to gain access to s | Apr 30, 2021 | 3.3 | 16 | NO | NO |
Dell Hybrid Client prior to version 1.8 contains a Regular Expression Denial of Service Vulnerability in the UI. An adversary with WMS group admin access could potentially exploit | Sep 30, 2022 | 2.7 | 15 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (10 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (10 CVEs).
Media Mentions
Signals from CVEs in this product scope (10 CVEs).
Top CNAs Publishing CVEs For Hybrid Client
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.0 | 1 | 5.5 | 0.2% | 0 | 0 |
| 1.6.2 | 2 | 4.9 | 0.4% | 0 | 0 |
| 1.6.1 | 2 | 4.9 | 0.4% | 0 | 0 |
| 1.6 | 2 | 4.9 | 0.4% | 0 | 0 |
| 1.5 | 2 | 4.9 | 0.4% | 0 | 0 |