VYPR
Critical severity9.8NVD Advisory· Published Mar 6, 2020· Updated Jun 17, 2026

CVE-2020-5328

CVE-2020-5328

Description

Dell EMC Isilon OneFS versions prior to 8.2.0 contain an unauthorized access vulnerability due to a lack of thorough authorization checks when SyncIQ is licensed, but encrypted syncs are not marked as required. When this happens, loss of control of the cluster can occur.

Affected products

3
  • cpe:2.3:a:dell:emc_isilon_onefs:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:dell:emc_isilon_onefs:*:*:*:*:*:*:*:*range: <8.2.0
    • (no CPE)range: unspecified
  • Range: <8.2.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.