Filtered by vendor Dell Subscriptions
Filtered by product Emc Elastic Cloud Storage Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-5317 1 Dell 1 Emc Elastic Cloud Storage 2024-09-17 4.8 Medium
Dell EMC ECS versions prior to 3.4.0.1 contain an XSS vulnerability. A remote authenticated malicious user could exploit this vulnerability to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable web application.
CVE-2019-3766 1 Dell 1 Emc Elastic Cloud Storage 2024-09-17 9.8 Critical
Dell EMC ECS versions prior to 3.4.0.0 contain an improper restriction of excessive authentication attempts vulnerability. An unauthenticated remote attacker may potentially perform a password brute-force attack to gain access to the targeted accounts.
CVE-2020-5386 1 Dell 1 Emc Elastic Cloud Storage 2024-09-16 7.5 High
Dell EMC ECS, versions prior to 3.5, contains an Exposure of Resource vulnerability. A remote unauthenticated attacker can access the list of DT (Directory Table) objects of all internally running services and gain knowledge of sensitive data of the system.