MEDIUM
EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB clients by modifying the client-server data stream, a similar issue to CVE-2016-2115
Published May 30, 2016
5.9
MEDIUMCVSS 3.0
EPSS 0.86%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.