Vulnerabilities > CVE-2021-21594 - Information Exposure Through Query Strings in GET Request vulnerability in Dell EMC Powerscale Onefs 8.2.2/9.0.0.0/9.1.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
dell
CWE-598

Summary

Dell PowerScale OneFS versions 8.2.2 - 9.1.0.x contain a use of get request method with sensitive query strings vulnerability. It can lead to potential disclosure of sensitive data. Dell recommends upgrading at your earliest opportunity.