news.mlab.sh
Back to the feed
vulnerability

StoneFly Storage Concentrator

Critical
Summary

This report details a critical vulnerability affecting StoneFly Storage Concentrator versions prior to 8.0.4.29, exposing the system to significant risks including unauthorized access, command execution, and data theft. The vulnerabilities stem from hardcoded credentials, command injection flaws, and SQL injection weaknesses, allowing attackers to potentially compromise interconnected systems across multiple sectors. Immediate action is advised to upgrade to the patched version.

Read the full article at CISA Advisories

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.