Netapp Clustered Data Ontap vulnerabilities
46 known vulnerabilities affecting netapp/clustered_data_ontap.
Total CVEs
46
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH18MEDIUM20LOW5
Vulnerabilities
Page 3 of 3
CVE-2018-5497P4MEDIUMCVSS 4.4≤ 9.1v9.1+3 more2019-01-24
CVE-2018-5497 [MEDIUM] CWE-200 CVE-2018-5497: Clustered Data ONTAP versions prior to 9.1P16, 9.3P10 and 9.4P5 are susceptible to a vulnerability w
Clustered Data ONTAP versions prior to 9.1P16, 9.3P10 and 9.4P5 are susceptible to a vulnerability which discloses sensitive information to an unauthorized user.
nvd
CVE-2020-8589P4LOWCVSS 3.5fixed in 9.3≥ 9.4, < 9.5+3 more2021-02-03
CVE-2020-8589 [LOW] CVE-2020-8589: Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which co
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the names of other Storage Virtual Machines (SVMs) and filenames on those SVMs.
nvd
CVE-2020-8588P4LOWCVSS 3.5fixed in 9.3≥ 9.4, < 9.5+3 more2021-02-03
CVE-2020-8588 [LOW] CVE-2020-8588: Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which co
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the existence of data on other Storage Virtual Machines (SVMs).
nvd
CVE-2015-8020P4LOWCVSS 3.7v8.0v8.3.1+1 more2017-01-11
CVE-2015-8020 [LOW] CWE-200 CVE-2015-8020: Clustered Data ONTAP versions 8.0, 8.3.1, and 8.3.2 contain a default privileged account which under
Clustered Data ONTAP versions 8.0, 8.3.1, and 8.3.2 contain a default privileged account which under certain conditions can be used for unauthorized information disclosure.
nvd
CVE-2020-8590P4LOWCVSS 3.3fixed in 9.1≥ 9.2, < 9.3+3 more2021-02-08
CVE-2020-8590 [LOW] CVE-2020-8590: Clustered Data ONTAP versions prior to 9.1P18 and 9.3P12 are susceptible to a vulnerability which co
Clustered Data ONTAP versions prior to 9.1P18 and 9.3P12 are susceptible to a vulnerability which could allow an attacker to discover node names via AutoSupport bundles even when the –remove-private-data parameter is set to true.
nvd
CVE-2020-8578P4LOWCVSS 3.3fixed in 9.3v9.3+1 more2021-02-08
CVE-2020-8578 [LOW] CVE-2020-8578: Clustered Data ONTAP versions prior to 9.3P20 are susceptible to a vulnerability which could allow a
Clustered Data ONTAP versions prior to 9.3P20 are susceptible to a vulnerability which could allow an attacker to discover node names via AutoSupport bundles even when the –remove-private-data parameter is set to true.
nvd
← Previous3 / 3