PT-2021-14610 · Dell Emc · Dell Emc Powerscale Onefs
Published
2021-08-02
·
Updated
2021-08-11
·
CVE-2021-21562
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Dell EMC PowerScale OneFS (affected versions not specified)
Description
The issue allows a user with specific privileges, including
ISI PRIV LOGIN SSH or ISI PRIV LOGIN CONSOLE and ISI PRIV SYS UPGRADE or ISI PRIV AUDIT, to provide an untrusted path. This can lead to the execution of resources that are not under the application's direct control, potentially resulting in unauthorized access or execution of malicious code.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Untrusted Search Path
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Emc Powerscale Onefs