CVE-2024-39581
Last modified
CVE-2024-39581 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability to read, modify, and delete arbitrary files.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability to read, modify, and delete arbitrary files.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dell | Insightiq | >= 5.0.0, < 5.1.1 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-39581?
How severe is CVE-2024-39581?
How do I fix CVE-2024-39581?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-39576Dell Power Manager (DPM), versions 3.15.0 and prior, contain…8.8
- CVE-2024-39577Dell SmartFabric OS10 Software, versions 10.5.6.x, 10.5.5.x,…8.8
- CVE-2024-39578Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 conta…6.3
- CVE-2024-39579Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 conta…6.7
- CVE-2024-3958An issue has been discovered in GitLab CE/EE affecting all v…6.5
- CVE-2024-39580Dell PowerScale InsightIQ, versions 5.0 through 5.1, contain…6.7
- CVE-2024-39582Dell PowerScale InsightIQ, version 5.0, contain a Use of har…4.4
- CVE-2024-39583Dell PowerScale InsightIQ, versions 5.0 through 5.1, contain…9.8
- CVE-2024-39584Dell Client Platform BIOS contains a Use of Default Cryptogr…8.2
- CVE-2024-39585Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through …8.1
- CVE-2024-39586Dell AppSync Server, version 4.3 through 4.6, contains an XM…4.3
- CVE-2024-39589Multiple invalid pointer dereference vulnerabilities exist i…7.5
Are you affected by CVE-2024-39581?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
