CVE-2024-29170

Dell PowerScale OneFS versions 8.2.x through 9.8.0.x contain a use of hard coded credentials vulnerability. An adjacent network unauthenticated attacker could potentially exploit this vulnerability, leading to information disclosure of network traffic and denial of service.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*

History

08 Jan 2025, 16:25

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000225667/dsa-2024-210-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000225667/dsa-2024-210-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - Vendor Advisory
CPE cpe:2.3:a:dell:powerscale_onefs:*:*:*:*:*:*:*:*
First Time Dell
Dell powerscale Onefs

21 Nov 2024, 09:07

Type Values Removed Values Added
References () https://www.dell.com/support/kbdoc/en-us/000225667/dsa-2024-210-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities - () https://www.dell.com/support/kbdoc/en-us/000225667/dsa-2024-210-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities -
Summary
  • (es) Dell PowerScale OneFS versiones 8.2.x a 9.8.0.x contienen una vulnerabilidad de uso de credenciales codificadas. Un atacante no autenticado de una red adyacente podría explotar esta vulnerabilidad, lo que provocaría la divulgación de información sobre el tráfico de la red y la denegación de servicio.

04 Jun 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-04 13:15

Updated : 2025-01-08 16:25


NVD link : CVE-2024-29170

Mitre link : CVE-2024-29170

CVE.ORG link : CVE-2024-29170


JSON object : View

Products Affected

dell

  • powerscale_onefs
CWE
CWE-798

Use of Hard-coded Credentials