Vulnerability Name: | CVE-2015-0528 (CCN-101833) | ||||||||
Assigned: | 2014-12-17 | ||||||||
Published: | 2015-03-25 | ||||||||
Updated: | 2016-08-24 | ||||||||
Summary: | The RPC daemon in EMC Isilon OneFS 6.5.x and 7.0.x before 7.0.2.13, 7.1.0 before 7.1.0.6, 7.1.1 before 7.1.1.2, and 7.2.0 before 7.2.0.1 allows local users to gain privileges by leveraging an ability to modify system files. | ||||||||
CVSS v3 Severity: | 8.2 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-264 | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: MITRE Type: CNA CVE-2015-0528 Source: MISC Type: Third Party Advisory, VDB Entry http://packetstormsecurity.com/files/131035/EMC-Isilon-OneFS-Privilege-Escalation.html Source: BUGTRAQ Type: Third Party Advisory, VDB Entry 20150325 ESA-2015-049: EMC Isilon OneFS Privilege Escalation Vulnerability Source: CCN Type: EMC Security Advisory ESA-2015-049 EMC Isilon OneFS Privilege Escalation Vulnerability Source: XF Type: UNKNOWN emc-isilononefs-cve20150528-priv-esc(101833) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |