Fiche vulnérabilité
CVE-2021-32521 : faille critique qsan sanos (CVSS 9.8)
Description
Use of MAC address as an authenticated password in QSAN Storage Manager, XEVO, SANOS allows local attackers to escalate privileges. Suggest contacting with QSAN and refer to recommendations in QSAN Document.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 7 juil. 2021
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- qsan sanos
- qsan storage manager
- qsan xevo