Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an insufficient logging vulnerability. An authenticated user with ISI_PRIV_LOGIN_PAPI could make un-audited and un-trackable configuration changes to settings that their roles have privileges to change.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Emc_powerscale_onefs | Dell | 9.0.0.0 (including) | 9.2.1 (including) |
Emc_powerscale_onefs | Dell | 8.2.2 (including) | 8.2.2 (including) |