CVE-2022-26854: Critical severity Dell EMC PowerScale OneFS vulnerability
Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious attacker could potentially exploit this vulnerability, leading to full system access
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-26854?
CVE-2022-26854 is a vulnerability in Dell PowerScale OneFS versions 8.2.x-9.2.x that contains risky cryptographic algorithms, allowing a remote unprivileged malicious attacker to potentially gain full system access.
How severe is CVE-2022-26854?
CVE-2022-26854 is considered critical with a severity rating of 9.8.
Which software versions are affected by CVE-2022-26854?
Dell PowerScale OneFS versions 8.2.x-9.2.x are affected by CVE-2022-26854.
How can this vulnerability be exploited?
A remote unprivileged malicious attacker can exploit CVE-2022-26854 to potentially gain full system access.
Is there a security update available for CVE-2022-26854?
Yes, Dell EMC has released a security update for CVE-2022-26854. More information can be found at: https://www.dell.com/support/kbdoc/en-us/000197991/dell-emc-powerscale-onefs-security-update-for-multiple-component-vulnerabilities