Vulnerabilities (CVE)

Filtered by vendor Dell Subscribe
Filtered by product Emc Openmanage Server Administrator
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-3721 1 Dell 1 Emc Openmanage Server Administrator 2020-08-24 7.8 HIGH 7.5 HIGH
Dell EMC Open Manage System Administrator (OMSA) versions prior to 9.3.0 contain an Improper Range Header Processing Vulnerability. A remote unauthenticated attacker may send crafted requests with overlapping ranges to cause the application to compress each of the requested bytes, resulting in a crash due to excessive memory consumption and preventing users from accessing the system.
CVE-2019-3722 1 Dell 1 Emc Openmanage Server Administrator 2019-10-09 5.0 MEDIUM 7.5 HIGH
Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain an XML external entity (XXE) injection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to read arbitrary server system files by supplying specially crafted document type definitions (DTDs) in an XML request.