PT-2021-14576 · Dell · Dell Powerscale Onefs
Published
2021-04-20
·
Updated
2026-02-20
·
CVE-2021-21526
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Dell PowerScale OneFS versions 8.1.0 through 9.1.0
Description
The issue concerns a privilege escalation in SmartLock compliance mode. This may allow
compadmin to execute arbitrary commands as root.Recommendations
For versions 8.1.0 through 9.1.0, consider restricting the privileges of
compadmin to prevent potential exploitation until a fix is available.Fix
LPE
OS Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Powerscale Onefs