First published: Tue Apr 04 2023(Updated: )
Dell PowerScale OneFS version 9.5.0.0 contains improper link resolution before file access vulnerability in isi_gather_info. A high privileged local attacker could potentially exploit this vulnerability, leading to system takeover and it breaks the compliance mode guarantees.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC PowerScale OneFS | =9.5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25940 is a vulnerability found in Dell PowerScale OneFS version 9.5.0.0.
CVE-2023-25940 has a severity rating of 7.8 (high).
CVE-2023-25940 can potentially lead to system takeover and breaks the compliance mode guarantees for Dell PowerScale OneFS version 9.5.0.0.
CVE-2023-25940 can be exploited by a high privileged local attacker.
To fix CVE-2023-25940, it is recommended to update to a patched version of Dell PowerScale OneFS.