5.3

CVE-2022-33932

Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotected primary channel vulnerability. An unauthenticated network malicious attacker may potentially exploit this vulnerability, leading to a denial of filesystem services.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DellEmc Powerscale Onefs Version >= 9.1.0.0 <= 9.1.0.19
DellEmc Powerscale Onefs Version >= 9.2.1.0 <= 9.2.1.12
DellEmc Powerscale Onefs Version >= 9.3.0.0 <= 9.3.0.6
DellEmc Powerscale Onefs Version >= 9.4.0.0 <= 9.4.0.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.528
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
security_alert@emc.com 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CWE-419 Unprotected Primary Channel

The product uses a primary channel for administration or restricted functionality, but it does not properly protect the channel.