Skip to main content

Vendor/product archive

xorux / stor2rrd CVEs

Beta · best-effort

4 CVEs tagged to xorux / stor2rrd2 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2021-42372

Published Nov 8, 2021

A shell command injection in the HW Events SNMP community in XoruX LPAR2RRD and STOR2RRD before 7.30 allows authenticated remote attackers to execute arbitrary shell commands as t…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-42370

Published Nov 8, 2021

A password mismanagement situation exists in XoruX LPAR2RRD and STOR2RRD before 7.30 because cleartext information is present in HTML password input fields in the device propertie…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-24032

Published Aug 18, 2020

tz.pl on XoruX LPAR2RRD and STOR2RRD 2.70 virtual appliances allows cmd=set&tz=OS command injection via shell metacharacters in a timezone.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1