Aller au contenu

Fiche vulnérabilité

CVE-2022-24411 : faille élevée Dell PowerScale OneFS (CVSS 7.8)

Description

Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability. A local attacker with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE could potentially exploit this vulnerability, leading to elevation of privilege. This could potentially allow users to circumvent PowerScale Compliance Mode guarantees.

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
12 avr. 2022
Dernière mise à jour
17 sept. 2024

Produits concernés

  • Dell PowerScale OneFS

Références

Rechercher une autre vulnérabilité dans la base CVE