Solidigm

First CVE: Oct 7, 2024Active for: 2 years
12
CVEs Published
More CVEs Published than 30% of tracked CNAs
6.0
Avg CVEs / Year
More Avg CVEs / Year than 37% of tracked CNAs
5.2
Avg CVSS Score
Higher Avg CVSS Score than 3% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published by Solidigm over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 7, 2024
21 months ago
Most Recent CVE
Nov 7, 2025
259 days ago

Top CVEs

All CVEs published by Solidigm as a CNA, regardless of affected vendor or product.

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Improper access control validation in firmware of some Solidigm DC Products may allow an attacker with physical access to gain unauthorized access or an attacker with local access
Oct 7, 20247.021NONO
Improper access removal handling in firmware of some Solidigm DC Products may allow an attacker with physical access to gain unauthorized access.
Oct 7, 20246.719NONO
Improper error handling in firmware of some SSD DC Products may allow an attacker to enable denial of service.
Oct 7, 20246.519NONO
Improper resource management in firmware of some Solidigm DC Products may allow an attacker with local or physical access to gain un-authorized access to a locked Storage Device or
Nov 7, 20254.418NONO
Improper resource management in firmware of some Solidigm DC Products may allow an attacker with local or physical access to gain un-authorized access to a locked storage device.
Nov 7, 20254.418NONO
Improper input validation in firmware of some Solidigm DC Products may allow an attacker with local access to cause a Denial of Service
Aug 28, 20254.418NONO
Improper resource management in firmware of some Solidigm DC Products may allow an attacker to potentially enable denial of service.
Oct 7, 20246.218NONO
In some Solidigm DC Products, a defect in device overprovisioning may provide information disclosure to an attacker.
Oct 7, 20245.117NONO
Improper resource initialization handling in firmware of some Solidigm DC Products may allow an attacker to potentially enable denial of service.
Oct 7, 20244.416NONO
Improper resource shutdown in middle of certain operations on some Solidigm DC Products may allow an attacker to potentially enable denial of service.
Oct 7, 20244.415NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA12 CVEs
Severity distribution among all CVEs352,231 CVEs
MediumHigh
Attack Vector
Local10 (83.3%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical2 (16.7%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (75.0%)
High3 (25.0%)
Unknown0 (0.0%)
User Interaction
None10 (83.3%)
Unknown0 (0.0%)
Required2 (16.7%)
Privileges Required
Low3 (25.0%)
High5 (41.7%)
None4 (33.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Solidigm as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Solidigm as a CNA — matched by CVE ID, not by organization name.

Top CWEs