Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m436-48r8-qqpq

Опубликовано: 10 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.

Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.

EPSS

Процентиль: 5%
0.0015
Низкий

7 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 7
nvd
больше 1 года назад

Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.

CVSS3: 7
fstec
больше 1 года назад

Уязвимость операционной системы PowerScale OneFS, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить доступ к учетной записи пользователя

EPSS

Процентиль: 5%
0.0015
Низкий

7 High

CVSS3

Дефекты

CWE-863