cbcvebase.
CVE-2022-22560
published 2022-04-12

CVE-2022-22560: Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user with knowledge of the credentials to login as the admin user…

medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user with knowledge of the credentials to login as the admin user to the backend ethernet switch of a PowerScale cluster. The attacker can exploit this vulnerability to take the switch offline.

Affected

2 ranges
VendorProductVersion rangeFixed in
dellemc_powerscale_onefs8.1.0 – 9.2.1.0
dellpowerscale_onefs