PT-2021-14601 · Dell · Dell Powerscale Onefs
Published
2021-08-02
·
Updated
2026-02-20
·
CVE-2021-21553
CVSS v3.1
8.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Dell PowerScale OneFS versions 8.1.0 through 9.1.0
Description
The issue is related to an Incorrect User Management vulnerability. Under specific conditions, this vulnerability can allow the CompAdmin user to elevate privileges and break out of Compliance mode. It is considered a critical issue.
Recommendations
For Dell PowerScale OneFS versions 8.1.0 through 9.1.0, upgrade at the earliest to resolve the issue. As a temporary workaround, consider restricting the privileges of the CompAdmin user to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Powerscale Onefs