Home
MEDIUM: 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
9.11.0.0 through 9.12.0.1 (semver) before 9.13.0.0 or later
affected
prior to 9.10.1.6 (semver) before 9.10.1.6 or later
affected
Description
Dell PowerScale OneFS, versions prior to 9.10.1.6 and versions 9.11.0.0 through 9.12.0.1, contains an uncontrolled search path element vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service, elevation of privileges, and information disclosure.
Problem types
CWE-427: Uncontrolled Search Path Element
Product status
9.11.0.0 through 9.12.0.1 (semver) before 9.13.0.0 or later
prior to 9.10.1.6 (semver) before 9.10.1.6 or later
References
www.dell.com/...ll-powerscale-onefs-multiple-vulnerabilities