Vendor
WFS
Products
3
CVEs
4
Across products
4
Status
Private
Products
3- 2 CVEs
- 1 CVE
- 1 CVE
Recent CVEs
4| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-29805 | Cri | 0.64 | 9.8 | 0.02 | Apr 14, 2023 | WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the pro_stor_canceltrans_handler_part_19 function. | ||
| CVE-2023-29804 | Hig | 0.59 | 8.8 | 0.17 | Apr 14, 2023 | WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the sys_smb_pwdmod function. | ||
| CVE-2022-48019 | Hig | 0.51 | 7.8 | 0.00 | Feb 6, 2023 | The components wfshbr64.sys and wfshbr32.sys in Another Eden before v3.0.20 and before v2.14.200 allows attackers to perform privilege escalation via a crafted payload. | ||
| CVE-2022-42046 | Hig | 0.51 | 7.8 | 0.00 | Dec 20, 2022 | wfshbr64.sys and wfshbr32.sys specially crafted IOCTL allows arbitrary user to perform local privilege escalation |
- risk 0.64cvss 9.8epss 0.02
WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the pro_stor_canceltrans_handler_part_19 function.
- risk 0.59cvss 8.8epss 0.17
WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the sys_smb_pwdmod function.
- risk 0.51cvss 7.8epss 0.00
The components wfshbr64.sys and wfshbr32.sys in Another Eden before v3.0.20 and before v2.14.200 allows attackers to perform privilege escalation via a crafted payload.
- risk 0.51cvss 7.8epss 0.00
wfshbr64.sys and wfshbr32.sys specially crafted IOCTL allows arbitrary user to perform local privilege escalation