Vulnerabilities > Dell > EMC Powerscale Onefs > 9.1.0.0

DATE CVE VULNERABILITY TITLE RISK
2022-04-12 CVE-2022-23161 Improper Handling of Exceptional Conditions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect.
network
low complexity
dell CWE-755
7.5
2022-04-12 CVE-2022-23163 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2,x, 9.1.0.x, 9.2.1.x, and 9.3.0.x contain a denial of service vulnerability.
local
low complexity
dell CWE-668
2.1
2022-04-12 CVE-2022-24411 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability.
local
low complexity
dell CWE-668
4.6
2022-04-12 CVE-2022-24412 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS 8.2.x - 9.3.0.x contain an improper handling of value vulnerability.
network
low complexity
dell
5.0
2022-04-12 CVE-2022-24413 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.2-9.3.x, contain a time-of-check-to-time-of-use vulnerability.
local
dell CWE-367
3.3
2022-04-08 CVE-2022-22563 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd.
local
low complexity
dell
2.1
2022-04-08 CVE-2022-24428 Improper Preservation of Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges.
network
low complexity
dell CWE-281
6.5
2022-04-08 CVE-2022-26851 Use of Insufficiently Random Values vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability.
network
low complexity
dell CWE-330
6.4
2022-04-08 CVE-2022-26852 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator.
network
low complexity
dell CWE-335
7.5
2022-04-08 CVE-2022-26854 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms.
network
low complexity
dell CWE-327
critical
10.0