CVE-2022-22565: Medium severity Dell EMC PowerScale OneFS vulnerability
Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information. An authenticated and privileged user could potentially exploit this vulnerability, leading to disclosure or modification of sensitive data.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-22565?
CVE-2022-22565 is a vulnerability in Dell PowerScale OneFS versions 9.0.0-9.3.0 that allows an authenticated and privileged user to disclose or modify sensitive data.
How severe is CVE-2022-22565?
CVE-2022-22565 has a severity score of 3.8, which is considered medium.
Which versions of Dell PowerScale OneFS are affected by CVE-2022-22565?
Dell PowerScale OneFS versions 9.0.0-9.3.0 are affected by CVE-2022-22565.
How can an attacker exploit CVE-2022-22565?
An authenticated and privileged user can exploit CVE-2022-22565 to disclose or modify sensitive data.
Is there a fix for CVE-2022-22565?
Dell has released a fix for CVE-2022-22565. It is recommended to upgrade to a fixed version of Dell PowerScale OneFS.