Dell Emc Powerscale Onefs vulnerabilities
84 known vulnerabilities affecting dell/emc_powerscale_onefs.
Total CVEs
84
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL9HIGH33MEDIUM38LOW4
Vulnerabilities
Page 5 of 5
CVE-2022-24413P4LOWCVSS 3.6≥ 8.2.2, ≤ 9.3.02022-04-12
CVE-2022-24413 [LOW] CWE-367 CVE-2022-24413: Dell PowerScale OneFS, versions 8.2.2-9.3.x, contain a time-of-check-to-time-of-use vulnerability. A
Dell PowerScale OneFS, versions 8.2.2-9.3.x, contain a time-of-check-to-time-of-use vulnerability. A local user with access to the filesystem could potentially exploit this vulnerability, leading to data loss.
nvd
CVE-2021-36282P4LOWCVSS 3.3≥ 9.0.0.0, < 9.2.0v8.2.22021-08-16
CVE-2021-36282 [LOW] CWE-908 CVE-2021-36282: Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerabi
Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerability. This can potentially allow an authenticated user with ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to gain access up to 24 bytes of data within the /ifs kernel stack under certain conditions.
nvd
CVE-2022-22565P4LOWCVSS 3.8≥ 8.2.0, ≤ 9.3.02022-04-12
CVE-2022-22565 [LOW] CWE-612 CVE-2022-22565: Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing s
Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information. An authenticated and privileged user could potentially exploit this vulnerability, leading to disclosure or modification of sensitive data.
nvd
CVE-2022-31237P4LOWCVSS 3.3≥ 9.2.0, ≤ 9.2.1.12≥ 9.3.0.0, ≤ 9.3.0.62022-08-22
CVE-2022-31237 [LOW] CWE-281 CVE-2022-31237: Dell PowerScale OneFS, versions 9.2.0 up to and including 9.2.1.12 and 9.3.0.5 contain an improper p
Dell PowerScale OneFS, versions 9.2.0 up to and including 9.2.1.12 and 9.3.0.5 contain an improper preservation of permissions vulnerability in SyncIQ. A low privileged local attacker may potentially exploit this vulnerability, leading to limited information disclosure.
nvd
← Previous5 / 5