Dell EMC PowerScale OneFS versions 8.1.2 and 8.2.2 contain an Incorrect Permission Assignment for a Critical Resource vulnerability. This may allow a non-admin user with either ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to exploit the vulnerability, leading to compromised cryptographic operations. Note: no non-admin users or roles have these privileges by default.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-02-09 14:15
Updated : 2021-02-12 08:54
NVD link : CVE-2020-26194
Mitre link : CVE-2020-26194
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
dell
- emc_powerscale_onefs