First published: Tue Dec 21 2021(Updated: )
Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass by primary weakness in one of the authentication factors. A remote unauthenticated attacker may potentially exploit this vulnerability and bypass one of the factors of authentication.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell PowerScale OneFS | >=8.2.2<9.3.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36350 is a vulnerability in Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, that allows for an authentication bypass by exploiting a weakness in one of the authentication factors.
CVE-2021-36350 has a severity rating of 7.5, which is considered high.
An attacker can potentially exploit CVE-2021-36350 by remotely bypassing one of the authentication factors.
Dell PowerScale OneFS versions 8.2.2-9.3.0.x are affected by CVE-2021-36350.
It is recommended to update Dell PowerScale OneFS to version 9.3.1.0 or later to address the vulnerability.