Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2696▼ 543 respecto a la semana anterior
Críticas / altas1264▼ 228 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)262▼ 241 respecto a la semana anterior
182 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.21% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2,x, 9.1.0.x, 9.2.1.x, and 9.3.0.x contain a denial of service vulnerability. A local malicious user could potentially exploit this vulnerability, leading to denial of service/data unavailability. | |
| Modificada | Alta (7.5) | 0.99% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS versions 8.2.x - 9.3.0.x contain a denial-of-service vulnerability in SmartConnect. An unprivileged network attacker may potentially exploit this vulnerability, leading to denial-of-service. | |
| Modificada | Media (4.3) | 0.51% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.0-9.3.0, contains an Improper Handling of Insufficient Permissions vulnerability. An remote malicious user could potentially exploit this vulnerability, leading to gaining write permissions on read-only files. | |
| Modificada | Media (6.5) | 0.61% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.2 - 9.3.0.x, contain a missing release of memory after effective lifetime vulnerability. An authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE and ISI_PRIV_AUTH_PROVIDERS privileges could exploit this vulnerability, leading to a Denial-Of-Service. This can also impact a… | |
| Modificada | Baja (3.8) | 0.49% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 9.0.0-9.3.0, contain an improper authorization of index containing sensitive information. An authenticated and privileged user could potentially exploit this vulnerability, leading to disclosure or modification of sensitive data. | |
| Modificada | Alta (7.5) | 0.93% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.0-9.3.0, contain a improper handling of missing values exploit. An unauthenticated network attacker could potentially exploit this denial-of-service vulnerability. | |
| Modificada | Crítica (9.8) | 1.4% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contain an improper restriction of excessive authentication attempts. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to compromised accounts. | |
| Modificada | Media (5.5) | 0.18% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user with knowledge of the credentials to login as the admin user to the backend ethernet switch of a PowerScale cluster. The attacker can exploit this vulnerability to take the switch offline. | |
| Modificada | Alta (7.5) | 0.59% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm. An unprivileged network attacker could exploit this vulnerability, leading to the potential for information disclosure. | |
| Modificada | Media (6.7) | 0.23% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.2 and above, contain a password disclosure vulnerability. An unprivileged local attacker could potentially exploit this vulnerability, leading to account take over. | |
| Modificada | Alta (8.1) | 0.69% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could potentially exploit this vulnerability, leading to a man-in-the-middle capture of administrative credentials. | |
| Modificada | Media (5.5) | 0.19% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability, leading to a denial of service. | |
| Modificada | Crítica (9.8) | 0.74% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious attacker could potentially exploit this vulnerability, leading to full system access | |
| Modificada | Crítica (9.8) | 1.2% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to an account compromise. | |
| Modificada | Crítica (9.1) | 0.93% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leading to data loss. | |
| Modificada | Alta (8.8) | 0.58% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges. A remote filesystem user with a local account could potentially exploit this vulnerability, leading to an escalation of file privileges and information disclosure. | |
| Modificada | Media (4.4) | 0.22% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd. A high-privileged user can exploit this vulnerability to not record information identifying the source of account information changes. | |
| Modificada | Alta (7.5) | 1.1% | — | Dell Powerscale Onefs | 21/12/2021 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass by primary weakness in one of the authentication factors. A remote unauthenticated attacker may potentially exploit this vulnerability and bypass one of the factors of authentication. | |
| Modificada | Media (5.5) | 0.25% | — | Dell EMC Powerscale Onefs | 23/11/2021 | 17/6/2026 | Dell PowerScale OneFS version 8.1.2 contains a sensitive information exposure vulnerability. This would allow a malicious user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE privileges to gain access to sensitive information in the log files. | |
| Modificada | Media (6.5) | 0.83% | — | Dell EMC Powerscale Onefs | 12/11/2021 | 17/6/2026 | Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling. An authenticated user of SMB on a cluster with CA could potentially exploit this vulnerability, leading to a denial of service over SMB. | |
| Modificada | Alta (7.5) | 0.99% | — | Dell EMC Powerscale Onefs | 12/11/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 9.1.0, 9.2.0.x, 9.2.1.x contain an Exposure of Information through Directory Listing vulnerability. This vulnerability is triggered when upgrading from a previous versions. | |
| Modificada | Baja (3.3) | 0.20% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerability. This can potentially allow an authenticated user with ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to gain access up to 24 bytes of data within the /ifs kernel stack under certain conditions. | |
| Modificada | Alta (8.8) | 0.69% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment vulnerability. A low privileged authenticated user can potentially exploit this vulnerability to escalate privileges. | |
| Modificada | Media (5.5) | 0.18% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulnerability. This could allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to access privileged information about the cluster. | |
| Modificada | Alta (7.8) | 0.19% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulnerability. This could allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to access privileged information about the cluster. |