CVE-2023-25940

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
04/04/2023
Last modified:
22/06/2023

Description

<br /> Dell PowerScale OneFS version 9.5.0.0 contains improper link resolution before file access vulnerability in isi_gather_info. A high privileged local attacker could potentially exploit this vulnerability, leading to system takeover and it breaks the compliance mode guarantees.<br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dell:emc_powerscale_onefs:9.5.0.0:*:*:*:*:*:*:*