Dell EMC PowerScale OneFS versions 8.2.0 - 9.1.0 contain a privilege escalation vulnerability. A non-admin user with either ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH may potentially exploit this vulnerability to read arbitrary data, tamper with system software or deny service to users. Note: no non-admin users or roles have these privileges by default.
2021-02-09T22:15:13.197
2024-11-21T05:19:29.433
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dell | emc_powerscale_onefs | 8.2.0 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.2.1 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.2.2 | Yes |
Operating System | dell | emc_powerscale_onefs | 9.0.0 | Yes |
Operating System | dell | emc_powerscale_onefs | 9.1.0 | Yes |