MEDIUM✓ PATCH🇵🇱 Wersja polska

CVE-2022-33932

CVSS 5.3v3.1pub. 2022-08-22upd. 2024-11-21

Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotected primary channel vulnerability. An unauthenticated network malicious attacker may potentially exploit this vulnerability, leading to a denial of filesystem services.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
  • Dell Emc Powerscale Onefs

    OS
    Dell
    9.1.0.0 – 9.1.0.199.2.1.0 – 9.2.1.129.3.0.0 – 9.3.0.69.4.0.0 – 9.4.0.2
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
CWE
References

Related vulnerabilities

CVE-2022-26851CRITICAL9.1PL ✓same product

Dell PowerScale OneFS — przewidywalna nazwa pliku umożliwia utratę danych

CVE-2021-21502CRITICAL9.8PL ✓same product

Dell PowerScale OneFS — pominięcie wygaśnięcia konta przez klucz SSH

CVE-2023-25941HIGH7.8same product

Dell PowerScale OneFS versions 8.2.x-9.5.0.x contain an elevation of privilege vulnerability. A low-privilege...

CVE-2022-33934HIGH7.7same product

Dell PowerScale OneFS, versions 8.2.x through 9.4.x contain multiple stored cross-site scripting vulnerabilit...

CVE-2022-45099HIGH7.8same product

Dell PowerScale OneFS, versions 8.2.x-9.4.x, contain a weak encoding for a NDMP password. A malicious and pri...