cbcvebase.
CVE-2021-21562
published 2021-08-03

CVE-2021-21562: Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability allows a user with (ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE)…

medium4.4CVSS 3.1
AVLACLPRHUINSUCNIHAN
Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability allows a user with (ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE) and (ISI_PRIV_SYS_UPGRADE or ISI_PRIV_AUDIT) to provide an untrusted path which can lead to run resources that are not under the application’s direct control.

Affected

5 ranges
VendorProductVersion rangeFixed in
dellemc_powerscale_onefs
dellemc_powerscale_onefs
dellemc_powerscale_onefs
dellemc_powerscale_onefs
dellpowerscale_onefs