Learn about CVE-2021-36350 impacting Dell PowerScale OneFS versions 8.2.2-9.3.0.x. An authentication bypass vulnerability allows remote attackers to compromise system integrity.
Dell PowerScale OneFS, versions 8.2.2-9.3.0.x, contain an authentication bypass vulnerability that allows a remote unauthenticated attacker to bypass one of the authentication factors.
Understanding CVE-2021-36350
This CVE impacts Dell's PowerScale OneFS, affecting versions 8.2.2-9.3.0.x. The vulnerability enables an attacker to bypass authentication factors remotely.
What is CVE-2021-36350?
CVE-2021-36350 is an authentication bypass vulnerability in Dell PowerScale OneFS versions 8.2.2-9.3.0.x. Attackers can exploit this weakness to bypass one of the authentication factors.
The Impact of CVE-2021-36350
With a CVSS base score of 5.9 (Medium severity), this vulnerability poses a risk of high integrity impact. However, it does not affect confidentiality or availability. Remote unauthenticated attackers can exploit this weakness to compromise the system.
Technical Details of CVE-2021-36350
The technical details of CVE-2021-36350 include:
Vulnerability Description
The vulnerability in Dell PowerScale OneFS allows attackers to bypass one of the authentication factors, leading to a compromise of system integrity.
Affected Systems and Versions
Dell's PowerScale OneFS versions 8.2.2-9.3.0.x are impacted by this vulnerability.
Exploitation Mechanism
Remote unauthenticated attackers can exploit this vulnerability to bypass authentication factors on affected systems.
Mitigation and Prevention
To mitigate the risks associated with CVE-2021-36350, consider the following steps:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates
Apply security patches provided by Dell to address the authentication bypass vulnerability in PowerScale OneFS versions 8.2.2-9.3.0.x.