Home
MEDIUM: 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
9.11.0.0 through 9.12.0.1 (semver) before 9.13.0.0 or later
affected
Versions prior to 9.10.1.6 (semver) before 9.10.1.6 or later
affected
Description
Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains an incorrect default permissions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to code execution, denial of service, elevation of privileges, and information disclosure.
Problem types
CWE-276: Incorrect Default Permissions
Product status
9.11.0.0 through 9.12.0.1 (semver) before 9.13.0.0 or later
Versions prior to 9.10.1.6 (semver) before 9.10.1.6 or later
References
www.dell.com/...ll-powerscale-onefs-multiple-vulnerabilities