Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerability. A low privileged local malicious user could potentially exploit this vulnerability to gain elevated access.
References
Configurations
History
21 Nov 2024, 08:56
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.6 |
References | () https://www.dell.com/support/kbdoc/en-us/000221707/dsa-2024-028-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - Third Party Advisory |
03 Feb 2024, 00:30
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
First Time |
Dell
Dell powerscale Onefs |
|
CWE | CWE-306 | |
CPE | cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:* | |
References | () https://www.dell.com/support/kbdoc/en-us/000221707/dsa-2024-028-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - Third Party Advisory |
01 Feb 2024, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-01 10:15
Updated : 2024-11-21 08:56
NVD link : CVE-2024-22449
Mitre link : CVE-2024-22449
CVE.ORG link : CVE-2024-22449
JSON object : View
Products Affected
dell
- powerscale_onefs
CWE
CWE-306
Missing Authentication for Critical Function