First published: Wed Feb 01 2023(Updated: )
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, contains an Improper Handling of Insufficient Privileges vulnerability in NFS. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to information disclosure and remote execution.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC PowerScale OneFS | >=9.1.0.0<9.1.0.25 | |
Dell EMC PowerScale OneFS | >=9.2.1.0<9.2.1.18 | |
Dell EMC PowerScale OneFS | >=9.4.0.0<9.4.0.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-45101 is critical with a CVSS score of 9.8.
The affected software for CVE-2022-45101 is Dell EMC PowerScale OneFS versions 9.0.0.x - 9.4.0.x.
CVE-2022-45101 is an Improper Handling of Insufficient Privileges vulnerability in NFS in Dell PowerScale OneFS 9.0.0.x - 9.4.0.x, which can be exploited by a remote unauthenticated attacker to potentially disclose information and execute remote commands.
CVE-2022-45101 can potentially lead to information disclosure and remote execution if exploited by a remote unauthenticated attacker.
You can find more information about CVE-2022-45101 at the Dell EMC PowerScale OneFS security updates page: https://www.dell.com/support/kbdoc/en-us/000206357/dell-emc-powerscale-onefs-security-updates-for-multiple-security-vulnerabilities