5.3
CVSSv3

CVE-2015-9256

Published: 20/02/2018 Updated: 19/03/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Datto ALTO and SIRIS devices allow remote malicious users to obtain sensitive information via access to device/VM restore mount points, because they do not have ACLs by default.

Vulnerable Product Search on Vulmon Subscribe to Product

datto alto_3_firmware -

datto alto_2_firmware -

datto alto_xl_firmware -

datto siris_3_firmware -

datto siris_2_firmware -

datto siris_3_x_all-flash_firmware -

datto siris_virtual_firmware -

datto alto_imaged_firmware -