SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in a Storage administrative role are able to access HNAS configuration backup and diagnostic data, that would normally be barred to that specific administrative role.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58091 | SMU versions prior to 14.8.7825.01 are susceptible to unintended information disclosure, through URL manipulation. Authenticated users in a Storage administrative role are able to access HNAS configuration backup and diagnostic data, that would normally be barred to that specific administrative role. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
History
No history.
Status: PUBLISHED
Assigner: HITVAN
Published:
Updated: 2024-08-28T17:34:56.347Z
Reserved: 2023-10-26T17:39:05.623Z
Link: CVE-2023-5808
Updated: 2024-08-02T08:14:23.995Z
Status : Modified
Published: 2023-12-05T00:15:09.840
Modified: 2024-11-21T08:42:32.017
Link: CVE-2023-5808
No data.
OpenCVE Enrichment
No data.
EUVD