4.4

CVE-2018-5497

Clustered Data ONTAP versions prior to 9.1P16, 9.3P10 and 9.4P5 are susceptible to a vulnerability which discloses sensitive information to an unauthorized user.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NetappClustered Data Ontap Version <= 9.1
NetappClustered Data Ontap Version9.1 Updatep10
NetappClustered Data Ontap Version9.1 Updatep11
NetappClustered Data Ontap Version9.1 Updatep12
NetappClustered Data Ontap Version9.1 Updatep13
NetappClustered Data Ontap Version9.1 Updatep14
NetappClustered Data Ontap Version9.1 Updatep15
NetappClustered Data Ontap Version9.1 Updatep2
NetappClustered Data Ontap Version9.1 Updatep3
NetappClustered Data Ontap Version9.1 Updatep4
NetappClustered Data Ontap Version9.1 Updatep5
NetappClustered Data Ontap Version9.1 Updatep6
NetappClustered Data Ontap Version9.1 Updatep7
NetappClustered Data Ontap Version9.1 Updatep8
NetappClustered Data Ontap Version9.1 Updatep9
NetappClustered Data Ontap Version9.1 Updaterc1
NetappClustered Data Ontap Version9.3 Updatep10
NetappClustered Data Ontap Version9.4 Updatep5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.15% 0.315
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.4 0.8 3.6
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.