cbcvebase.
CVE-2024-21982
published 2024-01-12

CVE-2024-21982: ONTAP versions 9.4 and higher are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information to…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
ONTAP versions 9.4 and higher are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information to unprivileged attackers when the object-store profiler command is being run by an administrative user.

Affected

13 ranges
VendorProductVersion rangeFixed in
netappclustered_data_ontap
netappclustered_data_ontap
netappclustered_data_ontap
netappclustered_data_ontap
netappclustered_data_ontap
netappclustered_data_ontap
netappclustered_data_ontap>= 9.4 < 9.89.8
netappontap_9>= 9.10.1 < 9.10.1P169.10.1P16
netappontap_9>= 9.11.1 < 9.11.1P139.11.1P13
netappontap_9>= 9.12.1 < 9.12.1P89.12.1P8
netappontap_9>= 9.13.1 < 9.13.1P49.13.1P4
netappontap_9>= 9.4 < 9.8P219.8P21
netappontap_9>= 9.9.1 < 9.9.1P189.9.1P18