First published: Thu Mar 02 2023(Updated: )
Dell PowerScale OneFS 9.4.0.x contains exposure of sensitive information to an unauthorized actor. A malicious authenticated local user could potentially exploit this vulnerability in certificate management, leading to a potential system takeover.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell PowerScale OneFS | >=9.4.0.0<=9.4.0.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25536 is a vulnerability in Dell PowerScale OneFS 9.4.0.x that allows an authenticated local user to expose sensitive information and potentially take over the system.
CVE-2023-25536 can be exploited by a malicious authenticated local user to gain unauthorized access to sensitive information and potentially take control of the affected system.
The severity of CVE-2023-25536 is medium, with a severity value of 6.7.
To fix CVE-2023-25536, it is recommended to apply the security updates provided by Dell EMC PowerScale OneFS.
You can find more information about CVE-2023-25536 on the Dell EMC PowerScale OneFS security updates page.