Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability allows a user with (ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE) and (ISI_PRIV_SYS_UPGRADE or ISI_PRIV_AUDIT) to provide an untrusted path which can lead to run resources that are not under the application’s direct control.
| Software | From | Fixed in |
|---|---|---|
| dell / emc_powerscale_onefs | 8.1.2 | 8.1.2.x |
| dell / emc_powerscale_onefs | 9.0.0.0 | 9.0.0.0.x |
| dell / emc_powerscale_onefs | 9.1.0.0 | 9.1.0.0.x |
| dell / emc_powerscale_onefs | 8.1.3 | 8.1.3.x |