CVE-2023-32492

EUVD-2023-36736
Dell PowerScale OneFS 9.5.0.x contains an incorrect default permissions vulnerability. A low-privileged local attacker could potentially exploit this vulnerability, leading to information disclosure or allowing to modify files.

ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
dellCNA
5.3 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
Affected Products (NVD)
VendorProductVersion
dellpowerscale_onefs
9.2.1.0 ≤
𝑥
≤ 9.2.1.22
dellpowerscale_onefs
9.4.0.0 ≤
𝑥
≤ 9.4.0.13
dellpowerscale_onefs
9.5.0.0 ≤
𝑥
≤ 9.5.0.3
𝑥
= Vulnerable software versions