CVE-2020-5355: Medium severity dell emc isilon vulnerability
Published Oct 21, 2022
·Updated
The Dell Isilon OneFS versions 8.2.2 and earlier SSHD process improperly allows Transmission Control Protocol (TCP) and stream forwarding. This provides the remotesupport user and users with restricted shells more access than is intended.
Affected Software
1 affected component
Dell EMC Isilon OneFS<=8.2.2
Event History
Oct 21, 2022
CVE Published
via MITRE·06:05 PM
Data Sourced
via MITRE·06:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this Dell Isilon OneFS vulnerability?
The vulnerability ID is CVE-2020-5355.
2
What software versions are affected by CVE-2020-5355?
Dell Isilon OneFS versions 8.2.2 and earlier are affected.
3
What is the severity rating of CVE-2020-5355?
CVE-2020-5355 has a severity rating of 4.3 (medium).
4
What is the specific issue with the Dell Isilon OneFS SSHD process?
The SSHD process improperly allows Transmission Control Protocol (TCP) and stream forwarding, providing more access than intended.
5
Is there a fix available for CVE-2020-5355?
Please refer to the Dell EMC support page at https://support.emc.com/kb/543561 for information on available fixes.