Home
CRITICAL: 9.3 CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:HDefault status
unknown
Any version
affected
Description
iSTAR Ultra performs a firmware verification on boot, however the verification does not inspect certain portions of the firmware. These firmware parts may contain malicious code. Tested up to firmware 6.9.2, later firmwares are also possibly affected.
Problem types
CWE-494 Download of Code Without Integrity Check
Product status
Any version
References
raw.githubusercontent.com/...ure/refs/heads/main/2025-03.txt