Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain an improper input validation vulnerability. A user with the ISI_PRIV_CLUSTER privilege may exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application.
2021-02-09T22:15:13.277
2024-11-21T05:19:29.627
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dell | emc_powerscale_onefs | 8.1.0 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.1.1 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.1.2 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.2.0 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.2.1 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.2.2 | Yes |
Operating System | dell | emc_powerscale_onefs | 9.0.0 | Yes |
Operating System | dell | emc_powerscale_onefs | 9.1.0 | Yes |