CVE-2020-5355

MEDIUM

Dell EMC Isilon OneFS <= 8.2.2 - Incorrect Default Permissions in SSHD

Title source: llm
STIX 2.1

Description

The Dell Isilon OneFS versions 8.2.2 and earlier SSHD process improperly allows Transmission Control Protocol (TCP) and stream forwarding. This provides the remotesupport user and users with restricted shells more access than is intended.

References (1)

Core 1
Core References

Scores

CVSS v3 4.3
EPSS 0.0016
EPSS Percentile 36.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-276
Status published
Products (1)
dell/emc_isilon_onefs < 8.2.2
Published Oct 21, 2022
Tracked Since Feb 18, 2026