Vulnerabilities > Xorux > Stor2Rrd > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-11-08 CVE-2021-42371 Insecure Storage of Sensitive Information vulnerability in Xorux Lpar2Rrd and Stor2Rrd
lpar2rrd is a hardcoded system account in XoruX LPAR2RRD and STOR2RRD before 7.30.
network
low complexity
xorux CWE-922
critical
9.8
2020-08-18 CVE-2020-24032 OS Command Injection vulnerability in Xorux Lpar2Rrd and Stor2Rrd
tz.pl on XoruX LPAR2RRD and STOR2RRD 2.70 virtual appliances allows cmd=set&tz=OS command injection via shell metacharacters in a timezone.
network
low complexity
xorux CWE-78
critical
9.8