cve/2020/CVE-2020-5355.md

18 lines
760 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2020-5355](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-5355)
![](https://img.shields.io/static/v1?label=Product&message=Isilon%20OneFS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%208.2.2%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-276%3A%20Incorrect%20Default%20Permissions&color=brighgreen)
### Description
The Dell Isilon OneFS versions 8.2.2 and earlier SSHD process improperly allows Transmission Control Protocol (TCP) and stream forwarding. This provides the remotesupport user and users with restricted shells more access than is intended.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/Live-Hack-CVE/CVE-2020-5355