Impact
Dell ObjectScale versions prior to 4.4.0.0 contain an incorrect permission assignment on a critical OS resource. A high‑privileged attacker who can reach the system remotely could exploit this misconfiguration, potentially causing a denial of service for legitimate users. The vulnerability does not expose sensitive data and does not allow code execution, but it can disrupt service availability.
Affected Systems
Dell ObjectScale products – all releases before version 4.4.0.0 are affected. The vulnerability applies to the operating system layer of the ObjectScale stack.
Risk and Exploitability
The CVSS score of 5.5 indicates moderate severity. The EPSS score is under 1%, reflecting a very low probability of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. The likely attack vector is remote access from a high‑privileged attacker, as stated in the description. Successful exploitation would lead to service disruption but does not compromise confidentiality or integrity of data.
OpenCVE Enrichment