Home
HIGH: 7.0 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
9.4.0.0 (semver)
affected
9.7.0.0 (semver)
affected
Description
Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.
Problem types
CWE-863: Incorrect Authorization
Product status
9.4.0.0 (semver)
9.7.0.0 (semver)
References
www.dell.com/...-onefs-for-multiple-security-vulnerabilities