Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-39578


Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.


Published

2024-08-31T08:15:04.437

Last Modified

2024-09-03T20:56:11.277

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-61
  • Type: Primary
    CWE-59

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application dell powerscale_onefs < 9.7.1.2 Yes
Application dell powerscale_onefs 9.8.0.0 Yes

References