CVE-2020-5369: High severity Dell EMC Isilon OneFS vulnerability
Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability. An authenticated malicious user may exploit this vulnerability by using SyncIQ to gain unauthorized access to system management files.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5369?
CVE-2020-5369 is a privilege escalation vulnerability in Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0.
How can an authenticated malicious user exploit CVE-2020-5369?
An authenticated malicious user can exploit CVE-2020-5369 by using SyncIQ to gain unauthorized access to system management files.
What is the severity of CVE-2020-5369?
CVE-2020-5369 has a severity rating of 8.8 (high).
Which software versions are affected by CVE-2020-5369?
Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 are affected by CVE-2020-5369.
Where can I find more information about CVE-2020-5369?
More information about CVE-2020-5369 can be found at this reference link: [https://www.dell.com/support/security/en-us/details/546160/DSA-2020-142-Dell-EMC-Isilon-OneFS-and-Dell-EMC-PowerScale-OneFS-Security-Update-for-SyncIQ-Privi](https://www.dell.com/support/security/en-us/details/546160/DSA-2020-142-Dell-EMC-Isilon-OneFS-and-Dell-EMC-PowerScale-OneFS-Security-Update-for-SyncIQ-Privi)