CVE-2020-26196 MEDIUM

CVE-2020-26196

Vendor Dell
Product PowerScale OneFS
Weakness CWE-732
Published February 9, 2021
Last update September 16, 2024

CVSS base score

5.5/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality None
Integrity High

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

What the vulnerability does

01Description

Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the BackupAdmin role may potentially exploit this vulnerability resulting in the ability to write data outside of the intended file system location.

Key dates

02Disclosure timeline

February 9, 2021 CVE published
September 16, 2024 Record updated