6.7
CVSSv3

CVE-2018-1203

Published: 26/03/2018 Updated: 03/10/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

In Dell EMC Isilon OneFS, the compadmin is able to run tcpdump binary with root privileges. In versions between 8.1.0.0 - 8.1.0.1, 8.0.1.0 - 8.0.1.2, and 8.0.0.0 - 8.0.0.6, the tcpdump binary, being run with sudo, may potentially be used by compadmin to execute arbitrary code with root privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

dell emc isilon onefs

Exploits

Core Security - Corelabs Advisory corelabscoresecuritycom/ Dell EMC Isilon OneFS Multiple Vulnerabilities 1 **Advisory Information** Title: Dell EMC Isilon OneFS Multiple Vulnerabilities Advisory ID: CORE-2017-0009 Advisory URL: wwwcoresecuritycom/advisories/dell-emc-isilon-onefs-multiple-vulnerabilities Date published: 2018-02 ...
Dell EMC Isilon OneFS suffers from code execution, cross site request forgery, and cross site scripting vulnerabilities ...