Vulnerability Description
Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an authorization bypass through user-controlled key vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability to gain unauthorized access to NFSv4 or SMB shares.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dell | Powerscale Onefs | >= 9.8.0.0, < 9.10.1.3 |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-43724?
CVE-2025-43724 is a vulnerability with a CVSS score of 4.4 (MEDIUM). Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an authorization bypass through user-controlled key vulnerability. A high privileged attacker with local access could potentially exploit th...
How severe is CVE-2025-43724?
CVE-2025-43724 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-43724?
Check the references section above for vendor advisories and patch information. Affected products include: Dell Powerscale Onefs.