Vulnerabilities > Dell > EMC Powerscale Onefs

DATE CVE VULNERABILITY TITLE RISK
2022-04-12 CVE-2022-24411 Exposure of Resource to Wrong Sphere vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability.
local
low complexity
dell CWE-668
7.8
2022-04-12 CVE-2022-24412 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS 8.2.x - 9.3.0.x contain an improper handling of value vulnerability.
network
low complexity
dell
7.5
2022-04-12 CVE-2022-24413 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.2-9.3.x, contain a time-of-check-to-time-of-use vulnerability.
local
high complexity
dell CWE-367
3.6
2022-04-08 CVE-2022-22563 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd.
local
low complexity
dell
4.4
2022-04-08 CVE-2022-24428 Improper Preservation of Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges.
network
low complexity
dell CWE-281
8.8
2022-04-08 CVE-2022-26851 Use of Insufficiently Random Values vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability.
network
low complexity
dell CWE-330
critical
9.1
2022-04-08 CVE-2022-26852 Incorrect Usage of Seeds in Pseudo-Random Number Generator (PRNG) vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator.
network
low complexity
dell CWE-335
critical
9.8
2022-04-08 CVE-2022-26854 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms.
network
low complexity
dell CWE-327
critical
9.8
2022-04-08 CVE-2022-26855 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
5.5
2021-11-23 CVE-2021-21561 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS version 8.1.2 contains a sensitive information exposure vulnerability.
local
low complexity
dell
5.5