CVE-2022-45098: Medium severity dell emc isilon onefs vulnerability
Dell PowerScale OneFS, 9.0.0.x-9.4.0.x, contain a cleartext storage of sensitive information vulnerability in S3 component. An authenticated local attacker could potentially exploit this vulnerability, leading to information disclosure.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-45098?
CVE-2022-45098 is a vulnerability in Dell PowerScale OneFS 9.0.0.x-9.4.0.x that involves cleartext storage of sensitive information in the S3 component, allowing an authenticated local attacker to potentially disclose information.
How severe is CVE-2022-45098?
CVE-2022-45098 has a severity score of 5.5, which is considered medium.
What software versions are affected by CVE-2022-45098?
CVE-2022-45098 affects Dell PowerScale OneFS versions 9.0.0.x through 9.4.0.x.
How can an attacker exploit CVE-2022-45098?
An authenticated local attacker can exploit CVE-2022-45098 to gain access to cleartext stored sensitive information in the S3 component.
Is there a fix available for CVE-2022-45098?
Yes, Dell has released security updates to address the vulnerability. Please refer to the Dell EMC PowerScale OneFS security updates for more information.