5.5

CVE-2021-27004

System Manager 9.x versions 9.7 and higher prior to 9.7P16, 9.8P7 and 9.9.1P2 are susceptible to a vulnerability which could allow a local attacker to discover plaintext iSCSI CHAP credentials.

Data is provided by the National Vulnerability Database (NVD)
NetappOntap System Manager Version >= 9.0 < 9.7
NetappOntap System Manager Version9.7 Update-
NetappOntap System Manager Version9.8 Update-
NetappOntap System Manager Version9.9.12 Update-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.13% 0.288
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 1.7 3.1 2.9
AV:L/AC:L/Au:S/C:P/I:N/A:N