Dell PowerScale OneFS 9.1.0.x contains an improper privilege management vulnerability. It may allow an authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE to elevate privilege.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Powerscale_onefs | Dell | 9.0.0.0 (including) | 9.0.0.0 (including) |
Powerscale_onefs | Dell | 9.1.0.0 (including) | 9.1.0.0 (including) |