CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS
Percentile
13.1%
Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerability. This vulnerability can allow an authenticated user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE privileges to escalate privileges.
Vendor | Product | Version | CPE |
---|---|---|---|
dell | emc_powerscale_onefs | 8.1.1 | cpe:2.3:o:dell:emc_powerscale_onefs:8.1.1:*:*:*:*:*:*:* |
dell | emc_powerscale_onefs | 8.1.2 | cpe:2.3:o:dell:emc_powerscale_onefs:8.1.2:*:*:*:*:*:*:* |
dell | emc_powerscale_onefs | 8.2.1 | cpe:2.3:o:dell:emc_powerscale_onefs:8.2.1:*:*:*:*:*:*:* |
dell | emc_powerscale_onefs | 8.2.2 | cpe:2.3:o:dell:emc_powerscale_onefs:8.2.2:*:*:*:*:*:*:* |
dell | emc_powerscale_onefs | 9.0.0.0 | cpe:2.3:o:dell:emc_powerscale_onefs:9.0.0.0:*:*:*:*:*:*:* |
dell | emc_powerscale_onefs | 9.1.0.0 | cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.0:*:*:*:*:*:*:* |
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS
Percentile
13.1%