CVE-2021-32510
MEDIUMQSAN Storage Manager <3.3.3 - Path Traversal
Title source: llmDescription
QSAN Storage Manager through directory listing vulnerability in antivirus function allows remote authenticated attackers to list arbitrary directories by injecting file path parameter. The referred vulnerability has been solved with the updated version of QSAN Storage Manager v3.3.3.
Scores
CVSS v3
4.3
EPSS
0.0012
EPSS Percentile
30.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Classification
CWE
CWE-548
Status
published
Affected Products (1)
qsan/storage_manager
< 3.3.3
Timeline
Published
Jul 07, 2021
Tracked Since
Feb 18, 2026