CVE-2021-36350: High severity dell emc powerscale onefs vulnerability
Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass by primary weakness in one of the authentication factors. A remote unauthenticated attacker may potentially exploit this vulnerability and bypass one of the factors of authentication.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-36350?
CVE-2021-36350 is a vulnerability in Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, that allows for an authentication bypass by exploiting a weakness in one of the authentication factors.
What is the severity of CVE-2021-36350?
CVE-2021-36350 has a severity rating of 7.5, which is considered high.
How can an attacker exploit CVE-2021-36350?
An attacker can potentially exploit CVE-2021-36350 by remotely bypassing one of the authentication factors.
Which versions of Dell PowerScale OneFS are affected by CVE-2021-36350?
Dell PowerScale OneFS versions 8.2.2-9.3.0.x are affected by CVE-2021-36350.
Is there a fix for CVE-2021-36350?
It is recommended to update Dell PowerScale OneFS to version 9.3.1.0 or later to address the vulnerability.