CVE-2007-20001

A flaw was found in StarWind iSCSI target. An attacker could script standard iSCSI Initiator operation(s) to exhaust the StarWind service socket, which could lead to denial of service. This affects iSCSI SAN (Windows Native) Version 3.2.2 build 2007-02-20.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:starwindsoftware:iscsi_san:*:*:*:*:*:windows:*:*

History

01 Sep 2022, 13:15

Type Values Removed Values Added
Summary StarWind iSCSI SAN before 3.5 build 2007-08-09 allows socket exhaustion. A flaw was found in StarWind iSCSI target. An attacker could script standard iSCSI Initiator operation(s) to exhaust the StarWind service socket, which could lead to denial of service. This affects iSCSI SAN (Windows Native) Version 3.2.2 build 2007-02-20.

11 Feb 2022, 03:18

Type Values Removed Values Added
CWE CWE-400
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CPE cpe:2.3:a:starwindsoftware:iscsi_san:*:*:*:*:*:windows:*:*
First Time Starwindsoftware iscsi San
Starwindsoftware
References (MISC) https://www.starwindsoftware.com/security/sw-20070601-0001/ - (MISC) https://www.starwindsoftware.com/security/sw-20070601-0001/ - Vendor Advisory

06 Feb 2022, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-06 21:15

Updated : 2023-12-10 14:09


NVD link : CVE-2007-20001

Mitre link : CVE-2007-20001

CVE.ORG link : CVE-2007-20001


JSON object : View

Products Affected

starwindsoftware

  • iscsi_san
CWE
CWE-400

Uncontrolled Resource Consumption