PT-2024-3633 · Dell · Powerscale Onefs

Published

2024-05-07

·

Updated

2025-01-09

·

CVE-2024-25970

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:C/A:N
Name of the Vulnerable Software and Affected Versions: Dell PowerScale OneFS versions 8.2.x through 9.7.0.1
Description: The issue is related to insufficient input validation in the PowerScale OneFS operating system. This could allow a remote attacker with low privileges to potentially exploit the vulnerability, leading to a loss of integrity of protected information. A remote attack is possible, and the impact could be significant.
Recommendations: For Dell PowerScale OneFS versions 8.2.x through 9.7.0.1, patch immediately to fix the improper input validation vulnerability. Additionally, monitor for signs of compromise to ensure the security of the system.

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2024-03955
CVE-2024-25970

Affected Products

Powerscale Onefs