Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an authorization bypass through user-controlled key vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability to gain unauthorized access to NFSv4 or SMB shares.
2025-10-08T15:16:23.670
2025-10-31T14:13:39.693
Analyzed
CVSSv3.1: 4.4 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | dell | powerscale_onefs | < 9.5.1.5 | Yes |
| Application | dell | powerscale_onefs | < 9.7.1.10 | Yes |
| Application | dell | powerscale_onefs | < 9.10.1.3 | Yes |
| Application | dell | powerscale_onefs | < 9.12.0.0 | Yes |