Vulnerability Description
Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability. An authenticated malicious user may exploit this vulnerability by using SyncIQ to gain unauthorized access to system management files.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Emc Isilon Onefs | 8.2.2 |
| Dell | Emc Powerscale Onefs | 9.0.0 |
Related Weaknesses (CWE)
References
- https://www.dell.com/support/security/en-us/details/546160/DSA-2020-142-Dell-EMCVendor Advisory
- https://www.dell.com/support/security/en-us/details/546160/DSA-2020-142-Dell-EMCVendor Advisory
FAQ
What is CVE-2020-5369?
CVE-2020-5369 is a vulnerability with a CVSS score of 8.8 (HIGH). Dell EMC Isilon OneFS versions 8.2.2 and earlier and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability. An authenticated malicious user may exploit this vulnerabilit...
How severe is CVE-2020-5369?
CVE-2020-5369 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-5369?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Emc Isilon Onefs, Dell Emc Powerscale Onefs.