Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p2h6-wjr5-7mx4

Опубликовано: 25 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.9

Описание

Quantum StorNext Web GUI API before 7.2.4 allows potential Arbitrary Remote Code Execution (RCE) via upload of a file. This affects StorNext RYO before 7.2.4, StorNext Xcellis Workflow Director before 7.2.4, and ActiveScale Cold Storage.

Quantum StorNext Web GUI API before 7.2.4 allows potential Arbitrary Remote Code Execution (RCE) via upload of a file. This affects StorNext RYO before 7.2.4, StorNext Xcellis Workflow Director before 7.2.4, and ActiveScale Cold Storage.

EPSS

Процентиль: 69%
0.00607
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.9
nvd
10 месяцев назад

Quantum StorNext Web GUI API before 7.2.4 allows potential Arbitrary Remote Code Execution (RCE) via upload of a file. This affects StorNext RYO before 7.2.4, StorNext Xcellis Workflow Director before 7.2.4, and ActiveScale Cold Storage.

EPSS

Процентиль: 69%
0.00607
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-434