Vulnerabilities > Dell > EMC Powerscale Onefs > 9.3.0.7

DATE CVE VULNERABILITY TITLE RISK
2023-02-10 CVE-2022-33934 Cross-site Scripting vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x through 9.4.x contain multiple stored cross-site scripting vulnerabilities.
network
low complexity
dell CWE-79
4.8
2023-02-10 CVE-2022-34454 Out-of-bounds Write vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a heap-based buffer overflow.
local
low complexity
dell CWE-787
6.7
2023-02-01 CVE-2022-45099 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.4.x, contain a weak encoding for a NDMP password.
local
low complexity
dell CWE-276
7.8
2023-02-01 CVE-2022-45100 Improper Certificate Validation vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contains an Improper Certificate Validation vulnerability.
network
low complexity
dell CWE-295
critical
9.8
2022-10-21 CVE-2022-34437 OS Command Injection vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.2-9.3.0, contain an OS command injection vulnerability.
local
low complexity
dell CWE-78
6.7
2022-10-21 CVE-2022-34438 Improper Privilege Management vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.4.0.x, contain a privilege context switching error.
local
low complexity
dell CWE-269
6.7
2022-10-21 CVE-2022-34439 Allocation of Resources Without Limits or Throttling vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.0.x-9.4.0.x contain allocation of Resources Without Limits or Throttling vulnerability.
network
low complexity
dell CWE-770
7.5