Vulnerabilities > Dell > EMC Powerscale Onefs > High

DATE CVE VULNERABILITY TITLE RISK
2023-04-04 CVE-2023-25941 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS versions 8.2.x-9.5.0.x contain an elevation of privilege vulnerability.
local
low complexity
dell
7.8
2023-04-04 CVE-2023-25940 Unspecified vulnerability in Dell EMC Powerscale Onefs 9.5.0.0
Dell PowerScale OneFS version 9.5.0.0 contains improper link resolution before file access vulnerability in isi_gather_info.
local
low complexity
dell
7.8
2023-02-28 CVE-2023-25540 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability.
local
low complexity
dell CWE-276
7.1
2023-02-01 CVE-2023-22574 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module.
network
low complexity
dell CWE-532
8.1
2023-02-01 CVE-2023-22575 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog.
network
low complexity
dell CWE-532
8.8
2023-02-01 CVE-2023-22572 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api.
local
low complexity
dell CWE-532
7.8
2023-02-01 CVE-2022-45099 Incorrect Default Permissions vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.x-9.4.x, contain a weak encoding for a NDMP password.
local
low complexity
dell CWE-276
7.8
2023-02-01 CVE-2022-46679 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 8.2.x, 9.0.0.x - 9.4.0.x, contain an insufficient resource pool vulnerability.
network
low complexity
dell
7.5
2023-02-01 CVE-2022-45097 Unspecified vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contains an Incorrect User Management vulnerability.
network
low complexity
dell
8.8
2022-10-21 CVE-2022-34439 Allocation of Resources Without Limits or Throttling vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 8.2.0.x-9.4.0.x contain allocation of Resources Without Limits or Throttling vulnerability.
network
low complexity
dell CWE-770
7.5