Vulnerability Details CVE-2021-36282
Dell EMC PowerScale OneFS versions 8.2.x - 9.1.0.x contain a use of uninitialized resource vulnerability. This can potentially allow an authenticated user with ISI_PRIV_LOGIN_CONSOLE or ISI_PRIV_LOGIN_SSH privileges to gain access up to 24 bytes of data within the /ifs kernel stack under certain conditions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.1%
CVSS Severity
CVSS v3 Score 2.5
CVSS v2 Score 2.1
Products affected by CVE-2021-36282
-
cpe:2.3:o:dell:emc_powerscale_onefs:8.2.2
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.0.0.0
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.0
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.21
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.24
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.25
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.26
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.0.27
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.1.0
-
cpe:2.3:o:dell:emc_powerscale_onefs:9.1.1.1