Dell Powerscale Onefs vulnerabilities
174 known vulnerabilities affecting dell/powerscale_onefs.
Total CVEs
174
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL15HIGH62MEDIUM89LOW8
Vulnerabilities
Page 6 of 9
CVE-2025-43722P4MEDIUMCVSS 6.7≥ 9.8.0.0, < 9.10.1.3≥ 9.5.0.0, < 9.7.1.10+3 more2025-09-08
CVE-2025-43722 [MEDIUM] CWE-269 CVE-2025-43722: Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper privilege management vulnera
Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper privilege management vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges.
nvd
CVE-2023-43076P4MEDIUMCVSS 6.5≥ 8.2.0, ≤ 8.2.2≥ 9.2.1, < 9.2.1.24+3 more2023-11-02
CVE-2023-43076 [MEDIUM] CWE-401 CVE-2023-43076: Dell PowerScale OneFS 8.2.x,9.0.0.x-9.5.0.x contains a denial-of-service vulnerability. A low privi
Dell PowerScale OneFS 8.2.x,9.0.0.x-9.5.0.x contains a denial-of-service vulnerability. A low privilege remote attacker could potentially exploit this vulnerability to cause an out of memory (OOM) condition.
nvd
CVE-2021-21563P4MEDIUMCVSS 6.5v8.1.2-9.1.0.x2021-08-03
CVE-2021-21563 [MEDIUM] CWE-754 CVE-2021-21563: Dell EMC PowerScale OneFS versions 8.1.2-9.1.0.x contain an Improper Check for Unusual or Exceptiona
Dell EMC PowerScale OneFS versions 8.1.2-9.1.0.x contain an Improper Check for Unusual or Exceptional Conditions in its auditing component.This can lead to an authenticated user with low-privileges to trigger a denial of service event.
nvd
CVE-2021-21550P4MEDIUMCVSS 6.7≥ unspecified, < 8.2.x, 9.1.x2021-05-06
CVE-2021-21550 [MEDIUM] CWE-78 CVE-2021-21550: Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in
Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerability. This vulnerability can allow an authenticated user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE privileges to escalate privileges.
nvd
CVE-2021-21527P4MEDIUMCVSS 6.7≥ unspecified, < 9.0.0 / 9.1.0 / 9.2.02021-05-06
CVE-2021-21527 [MEDIUM] CWE-78 CVE-2021-21527: Dell PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an
Dell PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerability. This vulnerability may allow an authenticated user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE privileges to escalate privileges.
nvd
CVE-2026-21423P4MEDIUMCVSS 6.7fixed in 9.10.1.6≥ 9.11.0.0, < 9.13.0.0+2 more2026-03-04
CVE-2026-21423 [MEDIUM] CWE-276 CVE-2026-21423: Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a
Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains an incorrect default permissions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to code execution, denial of service, elevation of privileges, and information disclosure.
nvd
CVE-2024-37126P4MEDIUMCVSS 6.7v9.8.0.0≥ 8.2.2, < 9.7.1.0+3 more2024-07-02
CVE-2024-37126 [MEDIUM] CWE-269 CVE-2024-37126: Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vuln
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to unauthorized gain of root-level access.
nvd
CVE-2024-37134P4MEDIUMCVSS 6.7v9.8.0.0≥ 8.2.2, < 9.5.1.0+4 more2024-07-02
CVE-2024-37134 [MEDIUM] CWE-266 CVE-2024-37134: Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vuln
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local high privileged attacker could potentially exploit this vulnerability to gain root-level access.
nvd
CVE-2024-37133P4MEDIUMCVSS 6.7v9.8.0.0≥ 8.2.2, < 9.4.0.18+5 more2024-07-02
CVE-2024-37133 [MEDIUM] CWE-269 CVE-2024-37133: Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vuln
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to unauthorized gain of root-level access.
nvd
CVE-2024-39579P4MEDIUMCVSS 6.7v9.8.0.0≥ 8.2.2.0, < 9.7.1.2+1 more2024-08-31
CVE-2024-39579 [MEDIUM] CWE-266 CVE-2024-39579: Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vu
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vulnerability. A local high privileged attacker could potentially exploit this vulnerability to gain root-level access.
nvd
CVE-2026-21426P4MEDIUMCVSS 6.7fixed in 9.10.1.6≥ 9.11.0.0, < 9.13.0.0+2 more2026-03-04
CVE-2026-21426 [MEDIUM] CWE-250 CVE-2026-21426: Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a
Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains an execution with unnecessary privileges vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service, elevation of privileges, and information disclosure.
nvd
CVE-2025-43937P4MEDIUMCVSS 6.6fixed in 9.5.1.5≥ 9.6.0.0, < 9.7.1.10+6 more2026-04-16
CVE-2025-43937 [MEDIUM] CWE-532 CVE-2025-43937: Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an insertion of sensitive information in
Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an insertion of sensitive information into log file vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerabl
nvd
CVE-2025-30101P4MEDIUMCVSS 6.3≥ 9.8.0.0, < 9.10.1.2≥ 9.8.0.0, ≤ 9.10.1.02025-05-08
CVE-2025-30101 [MEDIUM] CWE-367 CVE-2025-30101: Dell PowerScale OneFS, versions 9.8.0.0 through 9.10.1.0, contain a time-of-check time-of-use (TOCTO
Dell PowerScale OneFS, versions 9.8.0.0 through 9.10.1.0, contain a time-of-check time-of-use (TOCTOU) race condition vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to denial of service and information tampering.
nvd
CVE-2023-25540P4HIGHCVSS 7.1v9.4.0.0 through 9.4.0.112023-02-28
CVE-2023-25540 [HIGH] CWE-276 CVE-2023-25540: Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local mali
Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability to overwrite arbitrary files causing denial of service.
nvd
CVE-2024-25967P4MEDIUMCVSS 6.7≥ 8.2.0, ≤ 9.3.0≥ 9.4.0, < 9.4.0.18+6 more2024-05-14
CVE-2024-25967 [MEDIUM] CWE-250 CVE-2024-25967: Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an execution with unnecessary privileg
Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an execution with unnecessary privileges vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to escalation of privileges.
nvd
CVE-2022-34454P4MEDIUMCVSS 6.7≤ 9.1.0.0 through 9.1.0.20, 9.2.1.0 through 9.2.1.13, 9.3.0.0 through 9.3.0.72023-02-10
CVE-2022-34454 [MEDIUM] CWE-122 CVE-2022-34454: Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privilege
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow. A local privileged malicious user could potentially exploit this vulnerability, leading to system takeover. This impacts compliance mode clusters.
nvd
CVE-2023-32489P4MEDIUMCVSS 6.7≥ 9.2.1.0, ≤ 9.2.1.22≥ 9.4.0.0, ≤ 9.4.0.13+2 more2023-08-16
CVE-2023-32489 [MEDIUM] CWE-280 CVE-2023-32489: Dell PowerScale OneFS 8.2x -9.5x contains a privilege escalation vulnerability. A local attacker wi
Dell PowerScale OneFS 8.2x -9.5x contains a privilege escalation vulnerability. A local attacker with high privileges could potentially exploit this vulnerability, to bypass mode protections and gain elevated privileges.
nvd
CVE-2024-25961P4MEDIUMCVSS 6.7≥ 8.2.2.0, ≤ 9.3.0≥ 9.4.0, ≤ 9.4.0.16+7 more2024-03-28
CVE-2024-25961 [MEDIUM] CWE-269 CVE-2024-25961: Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vul
Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to escalation of privileges.
nvd
CVE-2024-32854P4MEDIUMCVSS 6.7v9.8.0.0≥ 8.2.2, < 9.5.1.0+4 more2024-07-02
CVE-2024-32854 [MEDIUM] CWE-269 CVE-2024-32854: Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vuln
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local high privilege attacker could potentially exploit this vulnerability, leading to privilege escalation.
nvd
CVE-2026-22270P4MEDIUMCVSS 6.7fixed in 9.10.1.6≥ 9.11.0.0, < 9.13.0.02026-03-04
CVE-2026-22270 [MEDIUM] CWE-427 CVE-2026-22270: Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains a
Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains an uncontrolled search path element vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service, elevation of privileges, and information disclosure.
nvd