CVE-2021-32526
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: twcert@cert.org.tw (Secondary)
Description
Incorrect permission assignment for critical resource vulnerability in QSAN Storage Manager allows authenticated remote attackers to access arbitrary password files. Suggest contacting with QSAN and refer to recommendations in QSAN Document.
Affected (1)
Products: Qsan: Storage Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 3.3.1 |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.