SoftIron HyperCloud Drive Caddy Removal and Reinsertion Data Wipe Vulnerability

Vulnerability

A data wipe vulnerability exists in SoftIron HyperCloud "density" storage nodes running HyperCloud software versions 1.0 prior to 2.0.3. The issue arises from a synchronization flaw that allows the system to mistakenly recognize a reinserted drive caddy as new media, leading to the erasure of all data on the drives. This vulnerability impacts data availability and integrity.

Impact

Exploitation of this vulnerability results in the unintended deletion of all data on the affected drives, causing significant disruption to data availability and integrity.

Added: Jun 22, 2026, 10:38 AM
Updated: Jun 22, 2026, 10:38 AM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
2.5
exploitability
3.1
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.