Vulnerabilities > Starwindsoftware > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-02-06 CVE-2013-20004 Resource Exhaustion vulnerability in Starwindsoftware Iscsi SAN
A flaw was found in StarWind iSCSI target.
network
low complexity
starwindsoftware CWE-400
critical
9.8
2022-02-06 CVE-2022-24552 OS Command Injection vulnerability in Starwindsoftware NAS and SAN
A flaw was found in the REST API in StarWind Stack.
network
low complexity
starwindsoftware CWE-78
critical
9.8
2021-12-08 CVE-2021-43527 Out-of-bounds Write vulnerability in multiple products
NSS (Network Security Services) versions prior to 3.73 or 3.68.1 ESR are vulnerable to a heap overflow when handling DER-encoded DSA or RSA-PSS signatures.
network
low complexity
mozilla netapp oracle starwindsoftware CWE-787
critical
9.8