Netapp Ontap Tools vulnerabilities
24 known vulnerabilities affecting netapp/ontap_tools.
Total CVEs
24
CISA KEV
1
actively exploited
Public exploits
3
Exploited in wild
1
Severity breakdown
CRITICAL3HIGH12MEDIUM8LOW1
Vulnerabilities
Page 2 of 2
CVE-2024-1351CRITICALCVSS 9.8v102024-03-07
CVE-2024-1351 [HIGH] CWE-295 CVE-2024-1351: Under certain configurations of --tlsCAFile and tls.CAFile, MongoDB Server may skip peer certificate
Under certain configurations of --tlsCAFile and tls.CAFile, MongoDB Server may skip peer certificate validation which may result in untrusted connections to succeed. This may effectively reduce the security guarantees provided by TLS and open connections that should have been closed due to failing certificate validation. This issue affects MongoDB Serve
nvd
CVE-2023-52433MEDIUMCVSS 4.4v9v102024-02-20
CVE-2023-52433 [MEDIUM] CWE-273 CVE-2023-52433: In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_set_rbtree: skip
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
New elements in this transaction might expired before such transaction
ends. Skip sync GC for such elements otherwise commit path might walk
over an already released object. Once transaction is finished,
nvd
CVE-2021-28165HIGHCVSS 7.5fixed in 9.102021-04-01
CVE-2021-28165 [HIGH] CWE-400 CVE-2021-28165: In Eclipse Jetty 7.2.2 to 9.4.38, 10.0.0.alpha0 to 10.0.1, and 11.0.0.alpha0 to 11.0.1, CPU usage ca
In Eclipse Jetty 7.2.2 to 9.4.38, 10.0.0.alpha0 to 10.0.1, and 11.0.0.alpha0 to 11.0.1, CPU usage can reach 100% upon receiving a large invalid TLS frame.
nvd
CVE-2021-3156HIGHCVSS 7.8KEVPoCv92021-01-26
CVE-2021-3156 [HIGH] CWE-193 CVE-2021-3156: Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, wh
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege escalation to root via "sudoedit -s" and a command-line argument that ends with a single backslash character.
nvd
← Previous2 / 2