PT-2021-14610 · Dell Emc · Dell Emc Powerscale Onefs

Published

2021-08-02

·

Updated

2021-08-11

·

CVE-2021-21562

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Dell EMC PowerScale OneFS (affected versions not specified)
Description The issue allows a user with specific privileges, including ISI PRIV LOGIN SSH or ISI PRIV LOGIN CONSOLE and ISI PRIV SYS UPGRADE or ISI PRIV AUDIT, to provide an untrusted path. This can lead to the execution of resources that are not under the application's direct control, potentially resulting in unauthorized access or execution of malicious code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-21562

Affected Products

Dell Emc Powerscale Onefs