CVE-2021-21595
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Dell EMC PowerScale OneFS versions 8.2.x - 9.1.1.x contain an improper neutralization of special elements used in an OS command. This vulnerability could allow the compadmin user to elevate privileges. This only impacts Smartlock WORM compliance mode clusters as a critical vulnerability and Dell recommends to update/upgrade at the earliest opportunity.
Dell EMC PowerScale OneFS versiones 8.2.x - 9.1.1.x, contienen una neutralización inapropiada de los elementos especiales usados en un comando del Sistema Operativo. Esta vulnerabilidad podría permitir al usuario compadmin elevar sus privilegios. Esto sólo afecta a los clústeres en modo de cumplimiento Smartlock WORM como una vulnerabilidad crítica y Dell recomienda actualizar/mejorar a la mayor brevedad posible.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-04 CVE Reserved
- 2021-08-16 CVE Published
- 2023-03-09 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection')
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.dell.com/support/kbdoc/000190408 | 2021-08-25 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dell Search vendor "Dell" | Emc Powerscale Onefs Search vendor "Dell" for product "Emc Powerscale Onefs" | >= 9.0.0.0 < 9.2.0 Search vendor "Dell" for product "Emc Powerscale Onefs" and version " >= 9.0.0.0 < 9.2.0" | - |
Affected
| ||||||
Dell Search vendor "Dell" | Emc Powerscale Onefs Search vendor "Dell" for product "Emc Powerscale Onefs" | 8.2.2 Search vendor "Dell" for product "Emc Powerscale Onefs" and version "8.2.2" | - |
Affected
|