Medium
CVSS: 4.3
An attacker may cause chunk-size mismatches that block file transfers and prevent subsequent transfers.
Medium
CVSS: 6.5
An attacker who tampers with the C++ CLI client may crash the UpdateService during file transfers, disrupting updates and availability.
High
CVSS: 7.6
A remote unauthenticated attacker may use the unauthenticated C++ API to access or modify sensitive data and disrupt services.
High
CVSS: 7.5
The system is deployed in its default state, with configuration settings that do not comply with the latest best practices for restricting access. This increases the risk of unauthorised connections.
Medium
CVSS: 5.5
An attacker that gains SSH access to an unprivileged account may be able to disrupt services (including SSH), causing persistent loss of availability.