Dell EMC PowerScale OneFS 8.1.x - 9.1.x contain hard coded credentials. This allows a local user with knowledge of the credentials to login as the admin user to the backend ethernet switch of a PowerScale cluster. The attacker can exploit this vulnerability to take the switch offline.
| Software | From | Fixed in |
|---|---|---|
| dell / emc_powerscale_onefs | 8.1.0 | 9.2.1.0.x |