Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m436-48r8-qqpq

Опубликовано: 10 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.

Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.

EPSS

Процентиль: 20%
0.00064
Низкий

7 High

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 7
nvd
10 месяцев назад

Dell PowerScale OneFS, versions 9.4.0.0 through 9.10.0.1, contains an incorrect authorization vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability to access the cluster with previous privileges of a disabled user account.

CVSS3: 7
fstec
10 месяцев назад

Уязвимость операционной системы PowerScale OneFS, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить доступ к учетной записи пользователя

EPSS

Процентиль: 20%
0.00064
Низкий

7 High

CVSS3

Дефекты

CWE-863