Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-25940

Опубликовано: 04 апр. 2023
Источник: nvd
CVSS3: 6.7
CVSS3: 7.8
EPSS Низкий

Описание

Dell PowerScale OneFS version 9.5.0.0 contains improper link resolution before file access vulnerability in isi_gather_info. A high privileged local attacker could potentially exploit this vulnerability, leading to system takeover and it breaks the compliance mode guarantees.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:dell:emc_powerscale_onefs:9.5.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 13%
0.00042
Низкий

6.7 Medium

CVSS3

7.8 High

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 7.8
github
почти 3 года назад

Dell PowerScale OneFS version 9.5.0.0 contains improper link resolution before file access vulnerability in isi_gather_info. A low privilege local attacker could potentially exploit this vulnerability, leading to system takeover and it breaks the compliance mode guarantees.

EPSS

Процентиль: 13%
0.00042
Низкий

6.7 Medium

CVSS3

7.8 High

CVSS3

Дефекты

CWE-59