HTTP Caching Vulnerability in OnCommand System Manager by NetApp
CVE-2020-8587
5.5MEDIUM
What is CVE-2020-8587?
OnCommand System Manager versions 9.x before 9.3P20 and 9.4 prior to 9.4P3 are affected by a vulnerability that allows HTTP clients to cache sensitive responses. This flaw can lead to potential data exposure, as attackers with access to the client system may retrieve cached data that should remain confidential. It highlights the importance of ensuring that sensitive information is not inadvertently stored in client-side caches, which could compromise security.
Affected Version(s)
OnCommand System Manager 9.x Versions 9.x prior to 9.3P20 and 9.4 prior to 9.4P3