Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain a privilege escalation vulnerability. A user with ISI_PRIV_JOB_ENGINE may use the PermissionRepair job to grant themselves the highest level of RBAC privileges thus being able to read arbitrary data, tamper with system software or deny service to users.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: dell
Published: 2021-02-09T21:25:19.654194Z
Updated: 2024-09-16T18:28:39.223Z
Reserved: 2020-09-30T00:00:00
Link: CVE-2020-26191
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-02-09T22:15:13.027
Modified: 2024-11-21T05:19:29.230
Link: CVE-2020-26191
Redhat
No data.