Show filters
458 Total Results
Displaying 61-70 of 458
Sort by:
Attacker Value
Unknown
CVE-2022-41737
Disclosure Date: February 17, 2024 (last updated January 06, 2025)
IBM Storage Scale Container Native Storage Access 5.1.2.1 through 5.1.7.0 could allow a local attacker to initiate connections from a container outside the current namespace. IBM X-Force ID: 237811.
0
Attacker Value
Unknown
CVE-2023-20570
Disclosure Date: February 13, 2024 (last updated October 18, 2024)
Insufficient verification of data authenticity in
the configuration state machine may allow a local attacker to potentially load
arbitrary bitstreams.
0
Attacker Value
Unknown
CVE-2024-22449
Disclosure Date: February 01, 2024 (last updated February 06, 2024)
Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerability. A low privileged local malicious user could potentially exploit this vulnerability to gain elevated access.
0
Attacker Value
Unknown
CVE-2024-22430
Disclosure Date: February 01, 2024 (last updated February 06, 2024)
Dell PowerScale OneFS versions 8.2.x through 9.6.0.x contains an incorrect default permissions vulnerability. A local low privileges malicious user could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2023-51751
Disclosure Date: January 11, 2024 (last updated January 23, 2024)
ScaleFusion 10.5.2 does not properly limit users to the Edge application because Alt-F4 can be used. This is fixed in 10.5.7 by preventing the launching of the file explorer in Agent-based Multi-App and Single App Kiosk mode.
0
Attacker Value
Unknown
CVE-2023-51750
Disclosure Date: January 11, 2024 (last updated January 23, 2024)
ScaleFusion 10.5.2 does not properly limit users to the Edge application because file downloads can occur. NOTE: the vendor's position is "Not vulnerable if the default Windows device profile configuration is used which utilizes modern management with website allow-listing rules."
0
Attacker Value
Unknown
CVE-2023-51749
Disclosure Date: January 11, 2024 (last updated January 19, 2024)
ScaleFusion 10.5.2 does not properly limit users to the Edge application because a search can be made from a tooltip. NOTE: the vendor's position is "Not vulnerable if the default Windows device profile configuration is used which utilizes modern management with website allow-listing rules."
0
Attacker Value
Unknown
CVE-2023-51748
Disclosure Date: January 11, 2024 (last updated January 19, 2024)
ScaleFusion 10.5.2 does not properly limit users to the Edge application because Ctrl-O and Ctrl-S can be used. This is fixed in 10.5.7 by preventing the launching of the file explorer in Agent-based Multi-App and Single App Kiosk mode.
0
Attacker Value
Unknown
CVE-2023-50159
Disclosure Date: January 11, 2024 (last updated January 19, 2024)
In ScaleFusion (Windows Desktop App) agent 10.5.2, Kiosk mode application restrictions can be bypassed allowing arbitrary code to be executed. This is fixed in 10.5.7 by preventing the launching of the file explorer in Agent-based Multi-App and Single App Kiosk mode.
0
Attacker Value
Unknown
CVE-2022-43843
Disclosure Date: December 14, 2023 (last updated December 19, 2023)
IBM Spectrum Scale 5.1.5.0 through 5.1.5.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 239080.
0