CVE-2023-22572: High severity dell emc isilon onefs vulnerability
Dell PowerScale OneFS 9.1.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in change password api. A low privilege local attacker could potentially exploit this vulnerability, leading to system takeover.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-22572?
CVE-2023-22572 is a vulnerability in Dell PowerScale OneFS 9.1.0.x-9.4.0.x that allows for the insertion of sensitive information into a log file, potentially leading to system takeover.
What is the severity of CVE-2023-22572?
The severity of CVE-2023-22572 is high, with a CVSS score of 7.8.
How does CVE-2023-22572 affect Dell PowerScale OneFS?
CVE-2023-22572 affects Dell PowerScale OneFS versions 9.1.0.x-9.4.0.x, allowing a low privilege local attacker to exploit the vulnerability and potentially gain system takeover.
How can I fix CVE-2023-22572?
To fix CVE-2023-22572, it is recommended to apply the security updates provided by Dell PowerScale OneFS, which can be found in the referenced link.
Where can I find more information about CVE-2023-22572?
More information about CVE-2023-22572 can be found in the Dell PowerScale OneFS security updates documentation at the referenced link.