Softiron

Hypercloud

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 20.02.2026 16:23:16
  • Zuletzt bearbeitet 20.02.2026 18:57:15

HyperCloud versions 2.3.5 through 2.6.8 improperly allowed refresh tokens to be used directly for resource access and failed to invalidate previously issued access tokens when a refresh token was used. Because refresh tokens have a significantly long...

  • EPSS 0.01%
  • Veröffentlicht 18.09.2025 19:15:37
  • Zuletzt bearbeitet 20.02.2026 17:25:08

SoftIron HyperCloud 2.5.0 through 2.6.3 may incorrectly add user SSH keys to the administrator-level authorized keys under certain conditions, allowing unauthorized privilege escalation to admin via SSH. Affects non-production debug and internal deve...

  • EPSS 0.12%
  • Veröffentlicht 30.12.2024 22:15:05
  • Zuletzt bearbeitet 29.08.2025 19:15:33

An issue exists in SoftIron HyperCloud where authenticated, but non-admin users can create data pools, which could potentially impact the performance and availability of the backend software-defined storage subsystem. This issue only impacts SoftIr...

  • EPSS 0.03%
  • Veröffentlicht 05.12.2023 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:26:21

An issue exists in SoftIron HyperCloud where drive caddy removal and reinsertion without a reboot may erroneously cause the system to recognize the caddy as new media and wipe all data on the drives due to a missing synchronization flaw, which impact...

  • EPSS 0.03%
  • Veröffentlicht 05.12.2023 17:15:08
  • Zuletzt bearbeitet 21.11.2024 08:26:21

An issue exists in SoftIron HyperCloud where compute nodes may come online immediately without following the correct initialization process.  In this instance, workloads may be scheduled on these nodes and deploy to a failed or erroneous state, which...

  • EPSS 0.02%
  • Veröffentlicht 05.12.2023 17:15:07
  • Zuletzt bearbeitet 21.11.2024 08:26:21

An Improper Privilege Management vulnerability exists in HyperCloud that will impact the ability for a user to authenticate against the management plane. An authenticated admin-level user may be able to delete the "admin" or "serveradmin" users, whi...