PT-2021-14576 · Dell · Dell Powerscale Onefs

Published

2021-04-20

·

Updated

2026-02-20

·

CVE-2021-21526

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Dell PowerScale OneFS versions 8.1.0 through 9.1.0
Description The issue concerns a privilege escalation in SmartLock compliance mode. This may allow compadmin to execute arbitrary commands as root.
Recommendations For versions 8.1.0 through 9.1.0, consider restricting the privileges of compadmin to prevent potential exploitation until a fix is available.

Fix

LPE

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-21526

Affected Products

Dell Powerscale Onefs