CVE-2022-34371: Critical severity dell emc isilon onefs vulnerability
Published Sep 2, 2022
·Updated
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.3, contain an unprotected transport of credentials vulnerability. A malicious unprivileged network attacker could potentially exploit this vulnerability, leading to full system compromise.
Affected Software
4 affected components
Dell EMC PowerScale OneFS>=9.1.0.0<=9.1.0.19
Dell EMC PowerScale OneFS>=9.2.1.0<=9.2.1.12
Dell EMC PowerScale OneFS>=9.3.0.0<=9.3.0.6
Dell EMC PowerScale OneFS>=9.4.0.0<=9.4.0.3
Remediation
Event History
Sep 2, 2022
CVE Published
via MITRE·05:30 PM
Data Sourced
via MITRE·05:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Dell PowerScale OneFS vulnerability?
The vulnerability ID for this Dell PowerScale OneFS vulnerability is CVE-2022-34371.
2
What is the severity level of CVE-2022-34371?
CVE-2022-34371 has a severity level of critical.
3
Which versions of Dell PowerScale OneFS are affected by CVE-2022-34371?
Dell PowerScale OneFS versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.3 are affected by CVE-2022-34371.
4
What is the impact of CVE-2022-34371?
CVE-2022-34371 can lead to full system compromise.
5
How can I fix the CVE-2022-34371 vulnerability?
To fix the CVE-2022-34371 vulnerability, apply the security update provided by Dell EMC PowerScale OneFS.