Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-23159

Опубликовано: 12 апр. 2022
Источник: nvd
CVSS3: 4.8
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability. An authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE and ISI_PRIV_AUTH_PROVIDERS privileges could exploit this vulnerability, leading to a Denial-Of-Service. This can also impact a cluster in Compliance mode. Dell recommends to update at the earliest opportunity.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:*
Версия от 8.2.2 (включая) до 9.3.0 (включая)

EPSS

Процентиль: 42%
0.00201
Низкий

4.8 Medium

CVSS3

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-401
CWE-401

Связанные уязвимости

CVSS3: 6.5
github
почти 4 года назад

Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability. An authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE and ISI_PRIV_AUTH_PROVIDERS privileges could exploit this vulnerability, leading to a Denial-Of-Service. This can also impact a cluster in Compliance mode. Dell recommends to update at the earliest opportunity.

EPSS

Процентиль: 42%
0.00201
Низкий

4.8 Medium

CVSS3

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-401
CWE-401