CVE-2022-29098
- EPSS 0.43%
- Veröffentlicht 01.06.2022 15:15:09
- Zuletzt bearbeitet 21.11.2024 06:58:28
Dell PowerScale OneFS versions 8.2.0.x through 9.3.0.x, contain a weak password requirement vulnerability. An administrator may create an account with no password. A remote attacker may potentially exploit this leading to a user account compromise.
CVE-2021-36350
- EPSS 0.39%
- Veröffentlicht 21.12.2021 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:13:35
Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass by primary weakness in one of the authentication factors. A remote unauthenticated attacker may potentially exploit this vulnerability and bypass one of the factors of au...
CVE-2021-21567
- EPSS 0.04%
- Veröffentlicht 10.08.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 05:48:36
Dell PowerScale OneFS 9.1.0.x contains an improper privilege management vulnerability. It may allow an authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE to elevate privilege.
CVE-2021-21565
- EPSS 0.38%
- Veröffentlicht 03.08.2021 00:15:08
- Zuletzt bearbeitet 21.11.2024 05:48:36
Dell PowerScale OneFS versions 9.1.0.3 and earlier contain a denial of service vulnerability. SmartConnect had an error condition that may be triggered to loop, using CPU and potentially preventing other SmartConnect DNS responses.
CVE-2021-21553
- EPSS 0.03%
- Veröffentlicht 03.08.2021 00:15:08
- Zuletzt bearbeitet 21.11.2024 05:48:35
Dell PowerScale OneFS versions 8.1.0-9.1.0 contain an Incorrect User Management vulnerability.under some specific conditions, this can allow the CompAdmin user to elevate privileges and break out of Compliance mode. This is a critical vulnerability a...
CVE-2021-21526
- EPSS 0.03%
- Veröffentlicht 20.04.2021 17:15:11
- Zuletzt bearbeitet 21.11.2024 05:48:31
Dell PowerScale OneFS 8.1.0 - 9.1.0 contains a privilege escalation in SmartLock compliance mode that may allow compadmin to execute arbitrary commands as root.