Press release
SoftNAS® Vulnerability Disclosed by Digital Defense, Inc. Researchers
San Antonio, TX – March 21, 2019 – Digital Defense, Inc., a leading security technology and services provider, today announced that its Vulnerability Research Team (VRT) discovered a previously undisclosed vulnerability in SoftNAS Cloud® data storage platform. If customers have not followed SoftNAS deployment best practices and have openly exposed SoftNAS StorageCenter® ports directly to the internet, SoftNAS Cloud Enterprise 4.2.0 is vulnerable to an authenticated bypass that could be leveraged to gain access to the webadmin interface without valid user credentials. The vulnerability potentially allows an attacker to create new users or execute arbitrary commands with administrative privileges, compromising both the platform and data. The vulnerability is not present on SoftNAS Cloud versions prior to 4.2 and is fixed in versions 4.2.2 and later.What You Can Do
Information regarding the security fix can be obtained through the SoftNAS release notes.
Details of the vulnerability can be found on the Digital Defense blog.
Tom DeSot, EVP/Chief Information Officer at Digital Defense, said, “SoftNAS has worked closely with our VRT to ensure a fix is available to organizations utilizing the affected platform. The SoftNAS team was extremely collaborative and diligent in their rapid response to the identification of the issue, resulting in a quick resolution.”
“We’re grateful to have partnered with the Digital Defense VRT to strengthen the security of SoftNAS Cloud. The protection and security of customer data is not only of the utmost importance to the SoftNAS team but is also integral to SoftNAS’ core business mission and vision,” said Rick Braddy, SoftNAS Co-Founder and CTO.
Digital Defense Research Methodology and Practices
The Digital Defense VRT regularly works with organizations in the responsible disclosure of zero-day vulnerabilities. The expertise of the VRT when coupled with the company’s next generation hybrid SaaS Security platform, Frontline.Cloud enables early detection capabilities. When zero-days are discovered and internally validated, the VRT immediately contacts the affected vendor to notify the organization of the new finding(s) and then assists, wherever possible, with the vendor’s remediation actions.
About Digital Defense
Serving clients across numerous industries, Digital Defense’s innovative and leading-edge technology helps organizations safeguard sensitive data and eases the burdens associated with information security. Frontline.Cloud, the original Security SaaS platform, delivers unparalleled accuracy and efficiencies through multiple systems including Frontline Vulnerability Manager (Frontline VM™), Frontline Web Application Scanning (Frontline WAS™), Frontline Active Threat Sweep™ (Frontline ATS™) and Frontline Pen Test™, while SecurED®, the company’s security awareness training, promotes employees’ security-minded behavior. The Digital Defense Frontline suite of products, underpinned by patented technology and complemented with superior service and support, are highly-regarded by industry experts, as illustrated by the company’s designation as 2018 Global Vulnerability Management Customer Value Leadership Award, #10 ranking in Black Book Market Research's list of Compliance & Risk Management Solutions, five-star review in SC Magazine, and inclusion in CRN’s MSP 500.
About SoftNAS
SoftNAS®, Inc. has pioneered cloud data control and management with its SoftNAS Cloud data platform. SoftNAS began six years ago as the global leader in software-defined Cloud NAS and has since matured into an enterprise software company. The SoftNAS Cloud data platform provides customers a unified and integrated way to aggregate, transform, accelerate, protect and store data and to easily create cloud storage solutions that bridge islands of data across SaaS, legacy systems, remote offices, factories, IoT, analytics, AI and machine learning, web services, SQL, NoSQL and the cloud – any kind of data. SoftNAS works with the most popular public, private, hybrid and premises-based virtual cloud operating systems, including Amazon Web Services, Microsoft Azure and VMware vSphere.
Contact Digital Defense at 888-273-1412; visit www.digitaldefense.com, our blog, LinkedIn, or follow @Digital_Defense on Twitter.
To learn more about SoftNAS, follow @SoftNAS on Twitter, LinkedIn, YouTube or the SoftNAS blog.
Digital Defense
9000 Tesoro Drive, Suite 100
San Antonio, TX 78217
Contact Digital Defense at 888-273-1412; visit www.digitaldefense.com, our blog, LinkedIn, or follow @Digital_Defense on Twitter.
Press Contact:
This release was published on openPR.
Permanent link to this press release:
Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.
You can edit or delete your press release SoftNAS® Vulnerability Disclosed by Digital Defense, Inc. Researchers here
News-ID: 1666016 • Views: …
More Releases from Digital Defense, Inc.

Digital Defense Earns 5-Star Rating in the 2020 CRN® Partner Program Guide
Quick on-boarding, platform ease of use, unparalleled support and revenue building tools give channel providers recipe for success
San Antonio, TX, March 30, 2020 - Digital Defense, Inc. today announced that it has received another 5-Star rating from CRN®, a brand of The Channel Company, in its 2020 Partner Program Guide. This annual guide is the definitive listing of the most rewarding partner programs from technology companies that provide products and…
Once again, Frontline VM is Designated Best Vulnerability Management Solution Fi …
San Antonio, TX—January 17, 2019—Digital Defense, Inc., a security technology and services provider, today announced that Frontline Vulnerability Manager™ (Frontline VM™) , a Frontline.Cloud system, has again been recognized as a Trust Award finalist in the Best Vulnerability Management Solution category for the 2019 SC Awards.
The mission of SC Awards is to honor the achievements of the cybersecurity brands and professionals striving to safeguard businesses, their customers, and critical…

NUUO Firmware Vulnerabilities Disclosed by Digital Defense, Inc. Researchers
Digital Defense, Inc., a leading security technology and services provider, today announced that its Vulnerability Research Team (VRT) discovered a previously undisclosed vulnerability in NUUO NVRmini2 Network Video Recorder firmware. NVRmini2 firmware version 3.9.1 and prior is vulnerable to an unauthenticated remote buffer overflow that could potentially be leveraged by an attacker to execute arbitrary code on the system with root privileges. This could allow the attacker to access and/or…
More Releases for NAS
Network Attached Storage (NAS) Market
𝐓𝐡𝐞 𝐍𝐞𝐭𝐰𝐨𝐫𝐤 𝐀𝐭𝐭𝐚𝐜𝐡𝐞𝐝 𝐒𝐭𝐨𝐫𝐚𝐠𝐞 (𝐍𝐀𝐒) 𝐦𝐚𝐫𝐤𝐞𝐭 𝐰𝐚𝐬 𝐯𝐚𝐥𝐮𝐞𝐝 𝐚𝐭 𝐚𝐩𝐩𝐫𝐨𝐱𝐢𝐦𝐚𝐭𝐞𝐥𝐲 𝐔𝐒𝐃 𝟑𝟏.𝟕𝟏 𝐛𝐢𝐥𝐥𝐢𝐨𝐧 𝐢𝐧 𝟐𝟎𝟐𝟑 𝐚𝐧𝐝 𝐢𝐬 𝐩𝐫𝐨𝐣𝐞𝐜𝐭𝐞𝐝 𝐭𝐨 𝐫𝐞𝐚𝐜𝐡 𝐔𝐒𝐃 𝟏𝟎𝟗.𝟕𝟐 𝐛𝐢𝐥𝐥𝐢𝐨𝐧 𝐛𝐲 𝟐𝟎𝟑𝟐, 𝐞𝐱𝐡𝐢𝐛𝐢𝐭𝐢𝐧𝐠 𝐚 𝐜𝐨𝐦𝐩𝐨𝐮𝐧𝐝 𝐚𝐧𝐧𝐮𝐚𝐥 𝐠𝐫𝐨𝐰𝐭𝐡 𝐫𝐚𝐭𝐞 (𝐂𝐀𝐆𝐑) 𝐨𝐟 𝟏𝟒.𝟖𝟐% 𝐟𝐫𝐨𝐦 𝟐𝟎𝟐𝟒 𝐭𝐨 𝟐𝟎𝟑𝟐.
𝐍𝐞𝐭𝐰𝐨𝐫𝐤 𝐀𝐭𝐭𝐚𝐜𝐡𝐞𝐝 𝐒𝐭𝐨𝐫𝐚𝐠𝐞 (𝐍𝐀𝐒) 𝐌𝐚𝐫𝐤𝐞𝐭 𝐎𝐯𝐞𝐫𝐯𝐢𝐞𝐰
The Network Attached Storage (NAS) market is experiencing significant growth, driven by the increasing demand for efficient data storage solutions across enterprises and consumers. NAS systems provide…
Consumer NAS And SMB NAS Market Research Outlook, Emerging Trends and Developmen …
Market Overview:
The Global Consumer NAS And SMB NAS Market Size Was Valued At USD 12.81 Billion In 2021 And Is Projected To Reach USD 19.13 Billion By 2028, Growing At A CAGR Of 5.9% From 2022 To 2028.
Consumer NAS refers to Network Attached Storage systems designed for individual users or households, providing a centralized storage solution for managing and accessing files and data within a home network. SMB NAS, on…
Consumer Network Attached Storage (NAS) Market
The use of enhanced storage choices, particularly for the preservation of vital consumer-centric data, has been made possible by the inefficiency of conventional storage methods. Enclosing such data storage devices into a network has become necessary in order to handle higher amounts of data transference. Individuals and business owners are increasingly attracted to set up network attached storage (NAS) servers as opposed to single computer storage.
Customers find it more…
NaS Batteries Market 2022 | Detailed Report
The NaS Batteries research report undoubtedly meets the strategic and specific needs of the businesses and companies. The report acts as a perfect window that provides an explanation of market classification, market definition, applications, market trends, and engagement. The competitive landscape is studied here in terms of product range, strategies, and prospects of the market’s key players. Furthermore, the report offers insightful market data and information about the NaS Batteries…
Consumer NAS and SMB NAS Market – Global Industry Analysis, Size, Share, Growt …
ReportsnReports.com adds "Consumer NAS and SMB NAS Market - Global Outlook and Forecast 2018-2023" report to its research store.
Get Free Sample Copy of This Consumer NAS and SMB NAS Market at https://www.reportsnreports.com/contacts/requestsample.aspx?name=1730956.
This market research report on consumer and SMB NAS market offers analysis on market size & forecast, market share, industry trends, growth drivers, and vendor analysis. The market study also includes insights on segmentation by end-user (consumer, SOHO,…
ASUSTOR Releases Enterprise-Level Rackmount NAS
An optimal storage solution for businesses that features the Intel® Atom™ 2.13 GHz dual core processor and support for VMware, Citrix and Hyper-V virtual environments
Taipei, Taiwan, January 29th, 2013 –ASUSTOR Inc., a leading innovator and provider of network storage solutions, today announced the release of four new enterprise-level 1U and 2U rackmount NAS devices. These new devices consist of the four drive bay AS-604RS and AS-604RD models and the nine…