Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability allows a user with (ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE) and (ISI_PRIV_SYS_UPGRADE or ISI_PRIV_AUDIT) to provide an untrusted path which can lead to run resources that are not under the application’s direct control.
2021-08-03T00:15:08.263
2024-11-21T05:48:36.187
Modified
CVSSv3.1: 4.4 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:P/A:N
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | dell | emc_powerscale_onefs | 8.1.2 | Yes |
Operating System | dell | emc_powerscale_onefs | 8.1.3 | Yes |
Operating System | dell | emc_powerscale_onefs | 9.0.0.0 | Yes |
Operating System | dell | emc_powerscale_onefs | 9.1.0.0 | Yes |