Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3p7w-fr8h-8fxc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The same hard-coded password in QSAN Storage Manager's in the firmware allows remote attackers to access the control interface with the administrator’s credential, entering the hard-coded password of the debug mode to execute the restricted system instructions.

The same hard-coded password in QSAN Storage Manager's in the firmware allows remote attackers to access the control interface with the administrator’s credential, entering the hard-coded password of the debug mode to execute the restricted system instructions.

EPSS

Процентиль: 76%
0.0096
Низкий

Дефекты

CWE-259
CWE-798

Связанные уязвимости

CVSS3: 9.1
nvd
больше 4 лет назад

The same hard-coded password in QSAN Storage Manager's in the firmware allows remote attackers to access the control interface with the administrator’s credential, entering the hard-coded password of the debug mode to execute the restricted system instructions. The referred vulnerability has been solved with the updated version of QSAN Storage Manager v3.3.3.

EPSS

Процентиль: 76%
0.0096
Низкий

Дефекты

CWE-259
CWE-798