CVE-2024-25960: Dell Powerscale Onefs

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains a cleartext transmission of sensitive information vulnerability. A local low privileged attacker could potentially exploit this vulnerability, leading to escalation of privileges.

Affected products

  • Dell Powerscale Onefs: from 8.2.2.0, up to and including 9.3.0; from 9.4.0, before 9.4.0.17 (fixed in 9.4.0.17); from 9.5.0.0, before 9.5.0.8 (fixed in 9.5.0.8); from 9.6.1, before 9.7.0.2 (fixed in 9.7.0.2)

Published 2024-03-28. Last modified 2026-06-17.