5.5
CVE-2020-26196
- EPSS 0.05%
- Veröffentlicht 09.02.2021 22:15:13
- Zuletzt bearbeitet 21.11.2024 05:19:30
- Quelle security_alert@emc.com
- CVE-Watchlists
- Unerledigt
Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the BackupAdmin role may potentially exploit this vulnerability resulting in the ability to write data outside of the intended file system location.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Dell ≫ Emc Powerscale Onefs Version8.1.0
Dell ≫ Emc Powerscale Onefs Version8.1.1
Dell ≫ Emc Powerscale Onefs Version8.1.2
Dell ≫ Emc Powerscale Onefs Version8.2.0
Dell ≫ Emc Powerscale Onefs Version8.2.1
Dell ≫ Emc Powerscale Onefs Version8.2.2
Dell ≫ Emc Powerscale Onefs Version9.0.0
Dell ≫ Emc Powerscale Onefs Version9.1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.113 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:N/I:P/A:N
|
| security_alert@emc.com | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
|
CWE-732 Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.