CVE-2026-22280: Medium severity Dell PowerScale OneFS vulnerability
Dell PowerScale OneFS, versions 9.5.0.0 through 9.5.1.5, versions 9.6.0.0 through 9.7.1.10, versions 9.8.0.0 through 9.10.1.3, versions starting from 9.11.0.0 and prior to 9.13.0.0, contains an incorrect permission assignment for critical resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-22280?
CVE-2026-22280 has been classified with a low severity due to the specific attack vector requirements.
How do I fix CVE-2026-22280?
To mitigate CVE-2026-22280, upgrade your Dell PowerScale OneFS to versions later than 9.13.0.0.
Who is affected by CVE-2026-22280?
Organizations using Dell PowerScale OneFS versions 9.5.0.0 to prior 9.13.0.0 are affected by CVE-2026-22280.
What kind of vulnerability is CVE-2026-22280?
CVE-2026-22280 is an incorrect permission assignment for critical resources vulnerability.
Can a low privileged attacker exploit CVE-2026-22280?
Yes, a low privileged attacker with local access can exploit CVE-2026-22280 due to its incorrect permission settings.