Known vulnerabilities in PowerScale OneFS - page 8

Vendor: Dell
Software CPE: cpe:2.3:h:dell:powerscale_onefs:*:*:*:*:*:*:*:*
Total vulnerabilities: 159
Public exploits: 10
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting PowerScale OneFS PowerScale OneFS is affected by 159 known vulnerabilities: 22 high, 58 medium, 79 low Critical High Medium Low

Vulnerabilities (159)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70712 -
CVE-2022-46679
Medium
No
No
9.1.0.26, 9.2.1.19, 9.4.0.10 05.01.2023 SB2023010508
#VU64685 - Improper Verification of Cryptographic Signature
CVE-2022-32208
CWE-347 Medium
No
No
9.1.0.26, 9.2.1.19, 9.4.0.10 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 73 more
#VU64684 - Incorrect Default Permissions
CVE-2022-32207
CWE-276 Low
No
No
9.1.0.26, 9.2.1.19, 9.4.0.10 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 35 more
#VU50040 - Heap-based Buffer Overflow
CVE-2021-3156
CWE-122 Low
Available
Exploited
- 26.01.2021 SB2021012632
SB2021012633
SB2021012634
and 55 more
#VU48744 - Use After Free
CVE-2020-7469
CWE-416 Medium
No
No
- 01.12.2020 SB2020120118
SB2022111518
#VU34100 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2020-7460
CWE-367 Low
No
No
- 07.08.2020 SB2020080703
SB2022102626
#VU34080 - NULL Pointer Dereference
CVE-2020-13632
CWE-476 Low
No
No
- 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 21 more
#VU34079 - Permissions, Privileges, and Access Controls
CVE-2020-13631
CWE-264 Low
No
No
- 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 22 more
#VU34077 - Use After Free
CVE-2020-13630
CWE-416 High
No
No
- 06.08.2020 SB2020080601
SB2020080704
SB2020072756
and 21 more
#VU28227 - Integer overflow
CVE-2020-13434
CWE-190 Medium
No
No
- 25.05.2020 SB2020052519
SB2020080704
SB2020052729
and 27 more
#VU28226 - Improper input validation
CVE-2020-13435
CWE-20 Medium
No
No
- 25.05.2020 SB2020052519
SB2020080704
SB2020052730
and 26 more
#VU27024 - Use After Free
CVE-2020-11656
CWE-416 High
No
No
- 20.04.2020 SB2020042007
SB2020042008
SB2020071620
and 9 more
#VU27023 - Improper input validation
CVE-2020-11655
CWE-20 Medium
No
No
- 20.04.2020 SB2020042007
SB2020042008
SB2020080704
and 10 more
#VU26235 - Missing release of memory after effective lifetime
CVE-2020-7451
CWE-401 Low
No
No
- 19.03.2020 SB2020031933
SB2022102811
#VU24690 - Improper Check for Dropped Privileges
CVE-2019-18276
CWE-273 Low
Available
No
9.1.0.21, 9.2.1.14, 9.3.0.7, 9.4.0.4 28.01.2020 SB2019112815
SB2020012803
SB2021052032
and 14 more
#VU21785 - Improper input validation
CVE-2019-9924
CWE-20 Low
No
No
9.1.0.21, 9.2.1.14, 9.3.0.7, 9.4.0.4 15.10.2019 SB2019032210
SB2019040917
SB2020040114
and 11 more
#VU20354 - Improper input validation
CVE-2019-5611
CWE-20 Medium
No
No
- 21.08.2019 SB2019082109
SB2022102811
#VU13104 - Command injection
CVE-2016-7543
CWE-77 Low
No
No
9.1.0.21, 9.2.1.14, 9.3.0.7, 9.4.0.4 28.05.2018 SB2018052514
SB2017080113
SB2017090814
and 10 more
#VU33511 - Use After Free
CVE-2016-9401
CWE-416 Low
No
No
9.1.0.21, 9.2.1.14, 9.3.0.7, 9.4.0.4 23.01.2017 SB2017011343
SB2017083137
SB2017010103
and 3 more


Showing elements 141 - 160 out of 159