CVE-2020-8576Incorrect Authorization in Clustered Data Ontap

Severity
5.4MEDIUMNVD
EPSS
0.2%
top 55.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 2
Latest updateMay 24

Description

Clustered Data ONTAP versions prior to 9.3P19, 9.5P14, 9.6P9 and 9.7 are susceptible to a vulnerability which when successfully exploited could lead to addition or modification of data or disclosure of sensitive information.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.5

Affected Packages2 packages

CVEListV5netapp/clustered_data_ontapVersions prior to 9.3P19, 9.5P14, 9.6P9 and 9.7

🔴Vulnerability Details

2
GHSA
GHSA-fv54-qxcj-f2hf: Clustered Data ONTAP versions prior to 92022-05-24
CVEList
CVE-2020-8576: Clustered Data ONTAP versions prior to 92020-09-02
CVE-2020-8576 — Incorrect Authorization | cvebase