API Injection Vulnerability in NetApp OnCommand System Manager
CVE-2016-3063
7.5HIGH
What is CVE-2016-3063?
Multiple functions in NetApp OnCommand System Manager prior to version 8.3.2 possess a flaw in character escaping, allowing remote authenticated users to execute arbitrary API calls. This vulnerability exposes the system to potential malicious actions through unauthorized access to API functionalities, which may compromise the integrity and confidentiality of the system.