8.5

CVE-2015-6848

EMC Isilon OneFS 7.1.x before 7.1.1.5, 7.2.0.x before 7.2.0.3, and 7.2.1.x before 7.2.1.1, when the RFC 2307 feature is configured but SFU is not universally present, allows remote authenticated AD users to obtain root privileges via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
EmcIsilon Onefs Version <= 7.1.1.0
EmcIsilon Onefs Version7.1.1.1
EmcIsilon Onefs Version7.1.1.2
EmcIsilon Onefs Version7.1.1.3
EmcIsilon Onefs Version7.1.1.4
EmcIsilon Onefs Version7.2.0.0
EmcIsilon Onefs Version7.2.0.1
EmcIsilon Onefs Version7.2.0.2
EmcIsilon Onefs Version7.2.1.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.37% 0.558
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.5 6.8 10
AV:N/AC:M/Au:S/C:C/I:C/A:C
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.