cve/2022/CVE-2022-33932.md

18 lines
968 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2022-33932](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-33932)
![](https://img.shields.io/static/v1?label=Product&message=PowerScale%20OneFS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%208.2.x%2C%209.0.0.x%2C%209.1.0.x%2C%209.2.0.x%2C%209.2.1.x%2C%209.3.0.x%2C%209.4.0.x%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-419%3A%20Unprotected%20Primary%20Channel&color=brighgreen)
### Description
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain an unprotected primary channel vulnerability. An unauthenticated network malicious attacker may potentially exploit this vulnerability, leading to a denial of filesystem services.
### POC
#### Reference
- https://www.dell.com/support/kbdoc/en-us/000201094/dsa-2022-149-dell-emc-powerscale-onefs-security-update?lang=en
#### Github
No PoCs found on GitHub currently.