San
Starwindsoftware · 2 CVEs
CVE-2022-24551
HIGH
A flaw was found in StarWind Stack. The endpoint for setting a new password doesn’t check the current username and old…
Feb 6, 2022
CVE-2022-24552
CRITICAL
A flaw was found in the REST API in StarWind Stack. REST command, which manipulates a virtual disk, doesn’t check input…
Feb 6, 2022
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2022-24551 | A flaw was found in StarWind Stack. The endpoint for setting a new password doesn’t check the current username and old password. An attacker could reset any lo… | HIGH | 0.89% | Feb 6, 2022 |
| CVE-2022-24552 | A flaw was found in the REST API in StarWind Stack. REST command, which manipulates a virtual disk, doesn’t check input parameters. Some of them go directly to… | CRITICAL | 1.31% | Feb 6, 2022 |
Showing 1 to 2 of 2 CVEs