Dell EMC Isilon OneFS versions prior to 8.2.0 contain an unauthorized access vulnerability due to a lack of thorough authorization checks when SyncIQ is licensed, but encrypted syncs are not marked as required. When this happens, loss of control of the cluster can occur.
References
Configurations
Information
Published : 2020-03-06 13:15
Updated : 2020-03-09 09:12
NVD link : CVE-2020-5328
Mitre link : CVE-2020-5328
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
dell
- emc_isilon_onefs