Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
220 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.59% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, version 9.3.0, contains a use of a broken or risky cryptographic algorithm. An unprivileged network attacker could exploit this vulnerability, leading to the potential for information disclosure. | |
| Modificada | Media (6.7) | 0.23% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.2 and above, contain a password disclosure vulnerability. An unprivileged local attacker could potentially exploit this vulnerability, leading to account take over. | |
| Modificada | Alta (8.1) | 0.69% | — | Dell EMC Powerscale Onefs | 12/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could potentially exploit this vulnerability, leading to a man-in-the-middle capture of administrative credentials. | |
| Modificada | Media (5.5) | 0.19% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.0.x, contains an incorrect default permissions vulnerability. A local malicious user could potentially exploit this vulnerability, leading to a denial of service. | |
| Modificada | Crítica (9.8) | 0.74% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.2.x, contain risky cryptographic algorithms. A remote unprivileged malicious attacker could potentially exploit this vulnerability, leading to full system access | |
| Modificada | Crítica (9.8) | 1.2% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x-9.3.x, contain a predictable seed in pseudo-random number generator. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to an account compromise. | |
| Modificada | Crítica (9.1) | 0.93% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leading to data loss. | |
| Modificada | Alta (8.8) | 0.58% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.x, 9.0.0.x, 9.1.0.x, 9.2.0.x, 9.2.1.x, and 9.3.0.x, contain an improper preservation of privileges. A remote filesystem user with a local account could potentially exploit this vulnerability, leading to an escalation of file privileges and information disclosure. | |
| Modificada | Media (4.4) | 0.22% | — | Dell EMC Powerscale Onefs | 8/4/2022 | 17/6/2026 | Dell EMC Powerscale OneFS 8.2.x - 9.2.x omit security-relevant information in /etc/master.passwd. A high-privileged user can exploit this vulnerability to not record information identifying the source of account information changes. | |
| Modificada | Alta (7.5) | 1.1% | — | Dell Powerscale Onefs | 21/12/2021 | 17/6/2026 | Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass by primary weakness in one of the authentication factors. A remote unauthenticated attacker may potentially exploit this vulnerability and bypass one of the factors of authentication. | |
| Modificada | Media (5.5) | 0.25% | — | Dell EMC Powerscale Onefs | 23/11/2021 | 17/6/2026 | Dell PowerScale OneFS version 8.1.2 contains a sensitive information exposure vulnerability. This would allow a malicious user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE privileges to gain access to sensitive information in the log files. | |
| Modificada | Media (6.8) | 0.25% | — | Dell EMC Powerscale Nodes A100 FirmwareDell EMC Powerscale Nodes S210 FirmwareDell EMC Powerscale Nodes X410 FirmwareDell EMC Powerscale Nodes H400 Firmware+15 | 12/11/2021 | 17/6/2026 | Dell EMC PowerScale Nodes contain a hardware design flaw. This may allow a local unauthenticated user to escalate privileges. This also affects Compliance mode and for Compliance mode clusters, is a critical vulnerability. Dell EMC recommends applying the workaround at your earliest opportunity. | |
| Modificada | Media (6.5) | 0.83% | — | Dell EMC Powerscale Onefs | 12/11/2021 | 17/6/2026 | Dell PowerScale OneFS contains an Unsynchronized Access to Shared Data in a Multithreaded Context in SMB CA handling. An authenticated user of SMB on a cluster with CA could potentially exploit this vulnerability, leading to a denial of service over SMB. | |
| Modificada | Alta (7.5) | 0.99% | — | Dell EMC Powerscale Onefs | 12/11/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 9.1.0, 9.2.0.x, 9.2.1.x contain an Exposure of Information through Directory Listing vulnerability. This vulnerability is triggered when upgrading from a previous versions. | |
| Modificada | Baja (3.3) | 0.20% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerability. This can potentially allow an authenticated user with ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to gain access up to 24 bytes of data within the /ifs kernel stack under certain conditions. | |
| Modificada | Alta (8.8) | 0.69% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment vulnerability. A low privileged authenticated user can potentially exploit this vulnerability to escalate privileges. | |
| Modificada | Media (5.5) | 0.18% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulnerability. This could allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to access privileged information about the cluster. | |
| Modificada | Alta (7.8) | 0.19% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulnerability. This could allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to access privileged information about the cluster. | |
| Modificada | Media (5.5) | 0.56% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x, 9.1.0.x, and 9.1.1.1 contain a sensitive information exposure vulnerability in log files. A local malicious user with ISI_PRIV_LOGIN_SSH, ISI_PRIV_LOGIN_CONSOLE, or ISI_PRIV_SYS_SUPPORT privileges may exploit this vulnerability to access sensitive information. If any… | |
| Modificada | Media (6.7) | 0.38% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.1.x contain an OS command injection vulnerability. This may allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to escalate privileges and escape the compliance guarantees. This only impacts Smartlock WORM compliance mode clusters as a critical vulnerability… | |
| Modificada | Media (6.7) | 0.24% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.1.1.x contain an improper neutralization of special elements used in an OS command. This vulnerability could allow the compadmin user to elevate privileges. This only impacts Smartlock WORM compliance mode clusters as a critical vulnerability and Dell recommends to… | |
| Modificada | Media (5.3) | 0.81% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell PowerScale OneFS versions 8.2.2 - 9.1.0.x contain a use of get request method with sensitive query strings vulnerability. It can lead to potential disclosure of sensitive data. Dell recommends upgrading at your earliest opportunity. | |
| Modificada | Media (6.5) | 0.84% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x improperly handle an exceptional condition. A remote low privileged user could potentially exploit this vulnerability, leading to unauthorized information disclosure. | |
| Modificada | Media (4.3) | 0.57% | — | Dell EMC Powerscale Onefs | 16/8/2021 | 17/6/2026 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an insufficient logging vulnerability. An authenticated user with ISI_PRIV_LOGIN_PAPI could make un-audited and un-trackable configuration changes to settings that their roles have privileges to change. | |
| Modificada | Alta (7.8) | 0.21% | — | Dell Powerscale Onefs | 10/8/2021 | 17/6/2026 | Dell PowerScale OneFS 9.1.0.x contains an improper privilege management vulnerability. It may allow an authenticated user with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE to elevate privilege. |