PT-2022-20628 · Unknown · Smartfabric Storage

Published

2022-08-30

·

Updated

2022-09-08

·

CVE-2022-31232

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SmartFabric storage software version 1.0.0
Description The issue is a Command-Injection vulnerability that could allow a remote unauthenticated attacker to gain access and perform actions on the affected system.
Recommendations For SmartFabric storage software version 1.0.0, consider disabling remote access until a patch is available to prevent potential exploitation of the Command-Injection vulnerability.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2022-31232

Affected Products

Smartfabric Storage