Dell EMC Isilon OneFS versions 8.1 and later and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability on a SmartLock Compliance mode cluster. The compadmin user connecting using ISI PRIV LOGIN SSH or ISI PRIV LOGIN CONSOLE can elevate privileges to the root user if they have ISI PRIV HARDENING privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2021-01-05T21:40:22.043302Z

Updated: 2024-09-16T18:12:49.554Z

Reserved: 2020-09-30T00:00:00

Link: CVE-2020-26181

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-01-05T22:15:13.673

Modified: 2021-10-04T17:31:34.703

Link: CVE-2020-26181

cve-icon Redhat

No data.