Dell PowerScale OneFS Execution with Unnecessary Privileges Vulnerability Allowing Denial-of-Service, Privilege Escalation, and Information Disclosure

Vulnerability

A vulnerability has been identified in Dell PowerScale OneFS versions prior to 9.10.1.6 and in the 9.11.0.0 to 9.12.0.1 range. This vulnerability allows a high-privileged attacker with local access to execute actions with unnecessary privileges, potentially leading to a denial-of-service condition, unauthorized elevation of privileges, and disclosure of sensitive information.

Impact

Exploitation of this vulnerability could result in a denial-of-service condition, unauthorized elevation of privileges, and unauthorized information disclosure.

Remediation

Users can upgrade to Dell PowerScale OneFS version 9.10.1.6 or version 9.13.0.0 or later. Instructions for downloading the update are available in the PowerScale OneFS Downloads Area.

Added: Mar 4, 2026, 1:19 PM
Updated: Mar 4, 2026, 7:15 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
3.0
remediation
7.7
relevance
3.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.