cbcvebase.
CVE-2024-24901
published 2024-03-04

CVE-2024-24901: Dell PowerScale OneFS 8.2.x through 9.6.0.x contain an insufficient logging vulnerability. A local malicious user with high privileges could potentially…

PriorityP46low2.3CVSS 3.1
AVLACLPRHUINSUCNILAN
EPSS
0.14%
4.0th percentile
Dell PowerScale OneFS 8.2.x through 9.6.0.x contain an insufficient logging vulnerability. A local malicious user with high privileges could potentially exploit this vulnerability, causing audit messages lost and not recorded for a specific time period.

Affected

8 ranges
VendorProductVersion rangeFixed in
dellpowerscale_onefs
dellpowerscale_onefs
dellpowerscale_onefs 9.3.0.0 – 9.4.0.16
dellpowerscale_onefs>= 8.2.0 < 9.2.1.259.2.1.25
dellpowerscale_onefs8.2.0 – 9.2.1.24
dellpowerscale_onefs>= 9.3.0.0 < 9.4.0.179.4.0.17
dellpowerscale_onefs>= 9.5.0.0 < 9.5.0.79.5.0.7
dellpowerscale_onefs9.5.0.0 – 9.5.0.6
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.