CVE-2022-24552
Published Feb 6, 2022A flaw was found in the REST API in StarWind Stack. REST command, which manipulates a virtual disk, doesn’t check input parameters. Some of them go directly to bash as part of a s…
Vendor/product archive
2 CVEs tagged to starwindsoftware / san — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
A flaw was found in the REST API in StarWind Stack. REST command, which manipulates a virtual disk, doesn’t check input parameters. Some of them go directly to bash as part of a s…
A flaw was found in StarWind Stack. The endpoint for setting a new password doesn’t check the current username and old password. An attacker could reset any local user password (i…