Описание
Incorrect permission assignment for critical resource vulnerability in QSAN Storage Manager allows authenticated remote attackers to access arbitrary password files. Suggest contacting with QSAN and refer to recommendations in QSAN Document.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.3.1 (включая)
cpe:2.3:a:qsan:storage_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.0017
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-732
CWE-732
Связанные уязвимости
github
больше 3 лет назад
Incorrect permission assignment for critical resource vulnerability in QSAN Storage Manager allows authenticated remote attackers to access arbitrary password files.
EPSS
Процентиль: 39%
0.0017
Низкий
6.5 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-732
CWE-732