Vulnerabilities > Dell > EMC Isilon Onefs > High

DATE CVE VULNERABILITY TITLE RISK
2021-07-29 CVE-2020-5353 Incorrect Default Permissions vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
The Dell Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 default configuration for Network File System (NFS) allows access to an 'admin' home directory.
network
low complexity
dell CWE-276
8.8
2021-07-28 CVE-2020-26180 Incorrect Default Permissions vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
Dell EMC Isilon OneFS supported versions 8.1 and later and Dell EMC PowerScale OneFS supported version 9.0.0 contain an access issue with the remotesupport user account.
network
low complexity
dell CWE-276
8.8
2021-01-05 CVE-2020-26181 Unspecified vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
Dell EMC Isilon OneFS versions 8.1 and later and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability on a SmartLock Compliance mode cluster.
local
low complexity
dell
7.8
2020-09-02 CVE-2020-5369 Incorrect Permission Assignment for Critical Resource vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability.
network
low complexity
dell CWE-732
8.8
2020-07-06 CVE-2020-5371 Incorrect Permission Assignment for Critical Resource vulnerability in Dell EMC Isilon Onefs and EMC Powerscale Onefs
Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale version 9.0.0 contain a file permissions vulnerability.
network
low complexity
dell CWE-732
8.8
2020-05-20 CVE-2020-5365 Use of Insufficiently Random Values vulnerability in Dell EMC Isilon Onefs
Dell EMC Isilon versions 8.2.2 and earlier contain a remotesupport vulnerability.
network
low complexity
dell CWE-330
7.5
2020-05-20 CVE-2020-5364 Information Exposure vulnerability in Dell EMC Isilon Onefs
Dell EMC Isilon OneFS versions 8.2.2 and earlier contain an SNMPv2 vulnerability.
network
low complexity
dell CWE-200
7.5
2020-04-04 CVE-2020-5347 Resource Exhaustion vulnerability in Dell EMC Isilon Onefs
Dell EMC Isilon OneFS versions 8.2.2 and earlier contain a denial of service vulnerability.
network
low complexity
dell CWE-400
7.5
2020-02-06 CVE-2020-5318 Incorrect Authorization vulnerability in Dell EMC Isilon Onefs
Dell EMC Isilon OneFS versions 8.1.2, 8.1.0.4, 8.1.0.3, and 8.0.0.7 contain a vulnerability in some configurations.
network
low complexity
dell CWE-863
7.5
2018-03-26 CVE-2018-1213 Cross-Site Request Forgery (CSRF) vulnerability in Dell EMC Isilon Onefs
Dell EMC Isilon OneFS versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, versions 7.2.1.x, and version 7.1.1.11 and 8.1.0.2 is affected by a cross-site request forgery vulnerability.
network
low complexity
dell CWE-352
8.8