Path traversal vulnerability in QSAN Storage Manager allows remote unauthenticated attackers to download arbitrary files thru injecting file path in download function. Suggest contacting with QSAN and refer to recommendations in QSAN Document.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-19373 Path traversal vulnerability in QSAN Storage Manager allows remote unauthenticated attackers to download arbitrary files thru injecting file path in download function. Suggest contacting with QSAN and refer to recommendations in QSAN Document.
Fixes

Solution

Please refer to QSANS's recommended measures


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-09-16T19:30:57.666Z

Reserved: 2021-05-10T00:00:00

Link: CVE-2021-32527

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-07-07T14:15:11.530

Modified: 2024-11-21T06:07:12.273

Link: CVE-2021-32527

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.