Known Vulnerabilities for products from Sandstorm
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Sandstorm".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-6201 json | A Server Side Request Forgery vulnerability exists in the install app process in Sandstorm before build 0.203. A remote attac... | 8.1 - HIGH | 2018-02-06 | 2018-03-13 |
| CVE-2017-6200 json | Sandstorm before build 0.203 allows remote attackers to read any specified file under /etc or /run via the sandbox backup fun... | 6.5 - MEDIUM | 2018-02-06 | 2018-03-13 |
| CVE-2017-6199 json | A remote attacker could bypass the Sandstorm organization restriction before build 0.203 via a comma in an email-address fiel... | 9.8 - CRITICAL | 2018-02-06 | 2018-03-13 |
| CVE-2017-6198 json | The Supervisor in Sandstorm doesn't set and enforce the resource limits of a process. This allows remote attackers to cause a... | 6.5 - MEDIUM | 2018-02-06 | 2018-03-13 |
Known software with vulnerabilities from Sandstorm
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Sandstorm | Sandstorm | 0.10 |