← العودة للجدول
CVE-2026-10880
CVE-2026-10880 — OSNexus QuantaStor SDS Manager is vulnerable to SQL injection in the login endpo
📅 2026-06-04
🔴 Critical 🔥 No NVD Vulnerability Web CVSS 9.8 🎯 EPSS 0.09%

📋 الوصف الكامل

OSNexus QuantaStor SDS Manager is vulnerable to SQL injection in the login endpoint. The username field is not properly sanitized before being incorporated into a SQL query, allowing an unauthenticated remote attacker to bypass authentication and log in as an administrator without supplying a valid password.

💻 الأنظمة المتأثرة

OSNexus QuantaStor SDS

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-10880

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-10880 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←