« Volver al listado

CVE-2025-43883

Estado: AnalizadaMedia (4.1)—

Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper check for unusual or exceptional conditions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-43883",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-43883",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2026-04-18T02:38:06.694001Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security_alert@emc.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 4.1,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "HIGH",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 0.5
      }
    ]
  },
  "affected": [
    {
      "source": "security_alert@emc.com",
      "affectedData": [
        {
          "vendor": "Dell",
          "product": "PowerScale OneFS",
          "versions": [
            {
              "status": "affected",
              "version": "9.5.0.0",
              "lessThan": "9.10.1.2",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "0",
              "lessThan": "9.12.0.0",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "9.7.0.0",
              "lessThan": "9.7.1.10",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "9.5.0.0",
              "lessThan": "9.5.1.4",
              "versionType": "semver"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2026-04-16T18:16:43.667",
  "references": [
    {
      "url": "https://www.dell.com/support/kbdoc/en-us/000376214/dsa-2025-347-security-update-for-dell-powerscale-onefs-multiple-vulnerabilities",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security_alert@emc.com"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security_alert@emc.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-754"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper check for unusual or exceptional conditions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service."
    },
    {
      "lang": "es",
      "value": "Dell PowerScale OneFS, versiones anteriores a la 9.12.0.0, contiene una vulnerabilidad de verificación inadecuada de condiciones inusuales o excepcionales. Un atacante con altos privilegios y acceso local podría potencialmente explotar esta vulnerabilidad, lo que llevaría a una denegación de servicio."
    }
  ],
  "lastModified": "2026-09-30T22:10:00.273",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E2CB3CCA-1CD2-413A-A9D1-4C89267D6DA3",
              "versionEndExcluding": "9.5.1.5"
            },
            {
              "criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "78A9B66B-77E0-475D-ACF7-668364C4821F",
              "versionEndExcluding": "9.7.1.10",
              "versionStartIncluding": "9.6.0.0"
            },
            {
              "criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "34F73334-874F-4D04-A0F1-BA9A5C505BAB",
              "versionEndExcluding": "9.10.1.3",
              "versionStartIncluding": "9.8.0.0"
            },
            {
              "criteria": "cpe:2.3:o:dell:powerscale_onefs:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E943ABD7-89C5-4B3C-A6F5-60CF6AF1A121",
              "versionEndExcluding": "9.12.0.0",
              "versionStartIncluding": "9.11.0.0"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security_alert@emc.com"
}