QID 730245
Date Published: 2021-11-10
QID 730245: Dell Isilon InsightIQ Authentication Bypass Vulnerability (DSA-2021-172)
InsightIQ software provides powerful performance monitoring and reporting tools to help you maximize the performance of your Dell EMC Isilon OneFS storage system. InsightIQ includes advanced analytics to optimize applications, correlate cluster events, and accurately forecast future storage needs.
CVE-2021-36298: Dell EMC InsightIQ, versions prior to 4.1.4, contain risky cryptographic algorithms in the SSH component. A remote unauthenticated attacker could potentially exploit this vulnerability leading to authentication bypass and remote takeover of the InsightIQ.
Affected Isilon InsightIQ Versions:
Prior to Isilon InsightIQ version 4.1.4
QID Detection Logic (Unauthenticated):
This QID check for vulnerable version of Dell Isilon InsightIQ running on web server.
A remote unauthenticated attacker could potentially exploit this vulnerability leading to authentication bypass and remote takeover of the InsightIQ.
CVEs related to QID 730245
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| DSA-2021-172 |
|