Vulnerabilities > Dell > EMC Powerscale Onefs > 9.1.0

DATE CVE VULNERABILITY TITLE RISK
2021-03-08 CVE-2021-21503 OS Command Injection vulnerability in Dell EMC Powerscale Onefs 8.1.2/8.2.2/9.1.0
PowerScale OneFS 8.1.2,8.2.2 and 9.1.0 contains an improper input sanitization issue in a command.
local
low complexity
dell CWE-78
4.6
2021-02-09 CVE-2021-21502 Improper Authentication vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS versions 8.1.0 – 9.1.0 contain a "use of SSH key past account expiration" vulnerability.
network
low complexity
dell CWE-287
7.5
2021-02-09 CVE-2020-26196 Incorrect Permission Assignment for Critical Resource vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue.
local
low complexity
dell CWE-732
2.1
2021-02-09 CVE-2020-26195 Improper Handling of Exceptional Conditions vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.2 – 9.1.0 contain an issue where the OneFS SMB directory auto-create may erroneously create a directory for a user.
network
low complexity
dell CWE-755
5.3
2021-02-09 CVE-2020-26193 OS Command Injection vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain an improper input validation vulnerability.
local
low complexity
dell CWE-78
7.2
2021-02-09 CVE-2020-26192 Missing Authentication for Critical Function vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.2.0 - 9.1.0 contain a privilege escalation vulnerability.
local
low complexity
dell CWE-306
4.6
2021-02-09 CVE-2020-26191 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain a privilege escalation vulnerability.
local
low complexity
dell
4.6