cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-32465,https://securityvulnerability.io/vulnerability/CVE-2023-32465,Authentication Bypass Vulnerability in Dell Power Protect Cyber Recovery,"Dell Power Protect Cyber Recovery exhibits a vulnerability that allows attackers to bypass authentication mechanisms. This flaw could allow an unauthorized individual to gain administrative access to the Cyber Recovery application, posing a significant risk of a complete system takeover. It is essential for users and administrators to apply security updates promptly to mitigate the potential threats associated with this vulnerability.",Dell,Powerprotect Cyber Recovery,8.8,HIGH,0.0007999999797903001,false,,false,false,false,,,false,false,,2023-06-14T14:15:00.000Z,0 CVE-2022-34372,https://securityvulnerability.io/vulnerability/CVE-2022-34372,Authentication Bypass Vulnerability in Dell PowerProtect Cyber Recovery,"An authentication bypass vulnerability exists in Dell PowerProtect Cyber Recovery prior to version 19.11.0.2. This issue allows remote unauthenticated attackers to exploit the docker registry API, potentially enabling them to access and manipulate docker images. The exploitation of this vulnerability could lead to a significant loss of integrity and confidentiality of sensitive data.",Dell,Cyber Recovery,9.8,CRITICAL,0.0032399999909102917,false,,false,false,false,,,false,false,,2022-09-01T19:15:00.000Z,0 CVE-2022-32481,https://securityvulnerability.io/vulnerability/CVE-2022-32481,Privilege Escalation Vulnerability in Dell PowerProtect Cyber Recovery,"Dell PowerProtect Cyber Recovery prior to version 19.11 has a vulnerability in its virtual appliance deployments that allows a lower-privileged authenticated user to escalate their privileges to root. By chaining specific docker commands, an attacker can gain complete control over the system, making it critical for users to update to the latest version to mitigate this risk.",Dell,Cyber Recovery,7.8,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2022-07-07T22:15:00.000Z,0 CVE-2021-21512,https://securityvulnerability.io/vulnerability/CVE-2021-21512,,"Dell EMC PowerProtect Cyber Recovery, version 19.7.0.1, contains an Information Disclosure vulnerability. A locally authenticated high privileged Cyber Recovery user may potentially exploit this vulnerability leading to the takeover of the notification email account.",Dell,Cyber Recovery,7.9,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-02-19T17:15:00.000Z,0