First published: Wed Feb 01 2023(Updated: )
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog. A low privileges user could potentially exploit this vulnerability, leading to information disclosure and escalation of privileges.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC PowerScale OneFS | >=9.1.0.0<9.1.0.27 | |
Dell EMC PowerScale OneFS | >=9.2.1.0<9.2.1.20 | |
Dell EMC PowerScale OneFS | >=9.4.0.0<9.4.0.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Dell PowerScale OneFS vulnerability is CVE-2023-22575.
The severity of CVE-2023-22575 is high with a severity value of 8.8.
The affected software for CVE-2023-22575 is Dell PowerScale OneFS version 9.0.0.x - 9.4.0.x.
The risk associated with CVE-2023-22575 is information disclosure and escalation of privileges.
Yes, Dell has released security updates for Dell PowerScale OneFS to address this vulnerability. Please refer to the reference link for more information.