PT-2022-15532 · Dell · Dell Powerscale Onefs
Published
2022-04-12
·
Updated
2022-04-20
·
CVE-2022-22565
CVSS v2.0
5.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Dell PowerScale OneFS versions 9.0.0 through 9.3.0
Description
The issue is related to improper authorization of an index containing sensitive information. An authenticated and privileged user could potentially exploit this, leading to disclosure or modification of sensitive data.
Recommendations
For versions 9.0.0 through 9.3.0, consider restricting access to sensitive indexes to prevent unauthorized disclosure or modification of sensitive data until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dell Powerscale Onefs