5.3

CVE-2022-23235

Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.10P1 are susceptible to a vulnerability which could allow an attacker to discover cluster, node and Active IQ Unified Manager specific information via AutoSupport telemetry data that is sent even when AutoSupport has been disabled.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netapp ≫ Active Iq Unified Manager SwPlatform linux Version < 9.10
Netapp ≫ Active Iq Unified Manager SwPlatform vmware_vsphere Version < 9.10
Netapp ≫ Active Iq Unified Manager SwPlatform windows Version < 9.10
Netapp ≫ Active Iq Unified Manager Version 9.10 Update - SwPlatform linux
Netapp ≫ Active Iq Unified Manager Version 9.10 Update - SwPlatform vmware_vsphere
Netapp ≫ Active Iq Unified Manager Version 9.10 Update - SwPlatform windows
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.53% 0.417
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.3 3.9 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://security.netapp.com/advisory/ntap-20220324-0001/
Patch
Vendor Advisory