CVE-2021-21506: Input Validation
PowerScale OneFS 8.1.2,8.2.2 and 9.1.0 contains an improper input sanitization issue in its API handler. An un-authtenticated with ISIPRIVSYSSUPPORT and ISIPRIVLOGINPAPI privileges could potentially exploit this vulnerability, leading to potential privileges escalation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21506?
CVE-2021-21506 is classified as a high severity vulnerability due to its potential for privilege escalation.
How do I fix CVE-2021-21506?
To mitigate CVE-2021-21506, ensure that your PowerScale OneFS is updated to the latest secure version provided by Dell EMC.
What versions of Dell EMC PowerScale OneFS are affected by CVE-2021-21506?
CVE-2021-21506 affects Dell EMC PowerScale OneFS versions 8.1.2, 8.2.2, and 9.1.0.
Who can exploit CVE-2021-21506?
An unauthenticated user with ISI_PRIV_SYS_SUPPORT and ISI_PRIV_LOGIN_PAPI privileges can potentially exploit CVE-2021-21506.
What type of vulnerability is CVE-2021-21506?
CVE-2021-21506 is an input sanitization issue in the API handler of Dell EMC PowerScale OneFS.