- Description
- Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool. A low privileged local attacker could potentially exploit this vulnerability, leading to sensitive information disclosure.
- Source
- security_alert@emc.com
- NVD status
- Modified
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D9D60B42-263C-400D-AFD6-62EF2A6043F4",
"versionEndExcluding": "9.1.0.27",
"versionStartIncluding": "9.1.0.0"
},
{
"criteria": "cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B800B3F7-925B-409C-ABFC-0AA9BA92835A",
"versionEndExcluding": "9.2.1.20",
"versionStartIncluding": "9.2.1.0"
},
{
"criteria": "cpe:2.3:o:dell:emc_powerscale_onefs:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C78B8E43-AB76-48CD-A626-31D54F1ADFDC",
"versionEndExcluding": "9.4.0.11",
"versionStartIncluding": "9.4.0.0"
}
],
"operator": "OR"
}
]
}
]