CVE-2022-24411

HIGH

Dell PowerScale OneFS 8.2.2+ - Privilege Escalation

Title source: llm

Description

Dell PowerScale OneFS 8.2.2 and above contain an elevation of privilege vulnerability. A local attacker with ISI_PRIV_LOGIN_SSH and/or ISI_PRIV_LOGIN_CONSOLE could potentially exploit this vulnerability, leading to elevation of privilege. This could potentially allow users to circumvent PowerScale Compliance Mode guarantees.

Scores

CVSS v3 7.8
EPSS 0.0005
EPSS Percentile 15.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-378 CWE-668
Status published

Affected Products (1)

dell/emc_powerscale_onefs < 9.3.0

Timeline

Published Apr 12, 2022
Tracked Since Feb 18, 2026