Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-34437


Dell PowerScale OneFS, versions 8.2.2-9.3.0, contain an OS command injection vulnerability. A privileged local malicious user could potentially exploit this vulnerability, leading to a full system compromise. This impacts compliance mode clusters.


Published

2022-10-21T18:15:09.907

Last Modified

2024-11-21T07:09:33.727

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.7 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-78
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell emc_powerscale_onefs ≤ 9.1.0.21 Yes
Operating System dell emc_powerscale_onefs ≤ 9.2.1.15 Yes
Operating System dell emc_powerscale_onefs ≤ 9.3.0.7 Yes

References