CVE-2024-25953: Dell Powerscale Onefs

Medium severity, CVSS 6.0. EPSS: 0.2% chance of exploitation in the next 30 days.

Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.

Affected products

  • Dell Powerscale Onefs: from 9.4.0, up to and including 9.4.0.16; from 9.5.0.0, before 9.5.0.8 (fixed in 9.5.0.8); from 9.6.1, before 9.7.0.2 (fixed in 9.7.0.2)

Published 2024-03-28. Last modified 2026-06-17.