5.3
CVE-2022-23235
- EPSS 0.53%
- Veröffentlicht 25.08.2022 18:15:09
- Zuletzt bearbeitet 21.11.2024 06:48:14
- Erkennungen
Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.10P1 are susceptible to a vulnerability which could allow an attacker to discover cluster, node and Active IQ Unified Manager specific information via AutoSupport telemetry data that is sent even when AutoSupport has been disabled.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netapp ≫ Active Iq Unified Manager SwPlatform linux Version < 9.10
Netapp ≫ Active Iq Unified Manager SwPlatform vmware_vsphere Version < 9.10
Netapp ≫ Active Iq Unified Manager SwPlatform windows Version < 9.10
Netapp ≫ Active Iq Unified Manager Version 9.10 Update - SwPlatform linux
Netapp ≫ Active Iq Unified Manager Version 9.10 Update - SwPlatform vmware_vsphere
Netapp ≫ Active Iq Unified Manager Version 9.10 Update - SwPlatform windows
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.53% | 0.417 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
https://security.netapp.com/advisory/ntap-20220324-0001/