CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-47475

High Severity
Dell
SVRS
50/100

CVSSv3
5.0/10

EPSS
0.00015/1

CVE-2024-47475 is a critical vulnerability in Dell PowerScale OneFS that could allow for denial of service. This incorrect permission assignment vulnerability impacts versions 8.2.2.x through 9.8.0.x. An attacker with local authentication could exploit this flaw. Despite a CVSS score of 5, the SOCRadar Vulnerability Risk Score (SVRS) is 50, indicating a moderate risk but still necessitating monitoring. A successful exploit could disrupt services. While not immediately critical based on SVRS, the potential for denial of service makes timely patching essential to mitigate risks. This is particularly important because of the "In The Wild" tag, which means it has been found to be already exploited in real attacks.

In The Wild
Vendor-advisory
CVSS:3.1
AV:L
AC:L
PR:L
UI:R
S:U
C:N
I:N
A:H
2025-01-06

2025-01-06

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

CVE-2024-47475 | Dell PowerScale OneFS up to 9.4.0.19/9.5.0.8/9.7.0.3/9.8.0.2 permission assignment (dsa-2024-417)
vuldb.com2025-01-06
CVE-2024-47475 | Dell PowerScale OneFS up to 9.4.0.19/9.5.0.8/9.7.0.3/9.8.0.2 permission assignment (dsa-2024-417) | A vulnerability was found in Dell PowerScale OneFS up to 9.4.0.19/9.5.0.8/9.7.0.3/9.8.0.2. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to incorrect permission assignment. The identification of this vulnerability is CVE-2024-47475. An attack has to be approached locally. There is no exploit available.
vuldb.com
rss
forum
news

Social Media

CVE-2024-47475 Local Denial of Service Vulnerability in Dell PowerScale OneFS Dell PowerScale OneFS versions 8.2.2.x up to 9.8.0.x have a vulnerability related to incorrect permission assignment for critical reso... https://t.co/1Bq8GTvBCT
0
0
0
CVE-2024-47475 Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerability. A locally authenticated attacker could … https://t.co/TkzvE8XQbd
0
0
0

Affected Software

Configuration 1
TypeVendorProduct
AppDellpowerscale_onefs

References

ReferenceLink
[email protected]https://www.dell.com/support/kbdoc/en-us/000242681/dsa-2024-417-security-update-for-dell-powerscale-onefs-for-security-vulnerability

CWE Details

CWE IDCWE NameDescription
CWE-732Incorrect Permission Assignment for Critical ResourceThe product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence