First published: Tue Feb 09 2021(Updated: )
Dell PowerScale OneFS versions 8.1.0 – 9.1.0 contain a "use of SSH key past account expiration" vulnerability. A user on the network with the ISI_PRIV_AUTH_SSH RBAC privilege that has an expired account may potentially exploit this vulnerability, giving them access to the same things they had before account expiration. This may by a high privileged account and hence Dell recommends customers upgrade at the earliest opportunity.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC PowerScale OneFS | =8.1.0 | |
Dell EMC PowerScale OneFS | =8.1.1 | |
Dell EMC PowerScale OneFS | =8.1.2 | |
Dell EMC PowerScale OneFS | =8.2.0 | |
Dell EMC PowerScale OneFS | =8.2.1 | |
Dell EMC PowerScale OneFS | =8.2.2 | |
Dell EMC PowerScale OneFS | =9.0.0 | |
Dell EMC PowerScale OneFS | =9.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.