CVE-2025-20055: Y's Corporation Stealthone d220
Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.
OS command injection vulnerability exists in network storage servers STEALTHONE D220/D340 provided by Y'S corporation. An attacker who can access the affected product may execute an arbitrary OS command.
Affected products
- Y's Corporation Stealthone d220: up to and including v6.03.02
- Y's Corporation Stealthone d340: up to and including v6.03.02
Published 2025-01-14. Last modified 2026-06-17.