CVE-2023-25540: High severity dell emc isilon onefs vulnerability
Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability to overwrite arbitrary files causing denial of service.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-25540?
CVE-2023-25540 is a vulnerability found in Dell PowerScale OneFS 9.4.0.x that allows a local malicious user to overwrite arbitrary files causing denial of service.
How does CVE-2023-25540 impact Dell PowerScale OneFS?
CVE-2023-25540 has a high severity rating of 7.1, indicating that it can be exploited by a local malicious user to cause denial of service.
What is the affected software for CVE-2023-25540?
The affected software for CVE-2023-25540 is Dell PowerScale OneFS version 9.4.0.x.
How can the incorrect default permissions vulnerability in Dell PowerScale OneFS be exploited?
A local malicious user can exploit the incorrect default permissions vulnerability in Dell PowerScale OneFS to overwrite arbitrary files, leading to denial of service.
Is there a fix available for CVE-2023-25540?
Yes, Dell has released security updates for Dell PowerScale OneFS to address the vulnerability. Please refer to the Dell support website for the updates.