Data Modification and Disclosure Vulnerability in NetApp Clustered Data ONTAP
CVE-2020-8576

5.4MEDIUM

Key Information:

Vendor
Netapp
Vendor
CVE Published:
2 September 2020

Summary

NetApp's Clustered Data ONTAP prior to versions 9.3P19, 9.5P14, 9.6P9, and 9.7 presents a significant vulnerability where an attacker might leverage this flaw to manipulate existing data or potentially expose sensitive information. Organizations using affected versions of this product should implement immediate corrective measures to safeguard their data integrity and ensure the confidentiality of sensitive information.

Affected Version(s)

Clustered Data ONTAP Versions prior to 9.3P19, 9.5P14, 9.6P9 and 9.7

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2020-8576 : Data Modification and Disclosure Vulnerability in NetApp Clustered Data ONTAP | SecurityVulnerability.io