Data Exposure Vulnerability in NetApp Clustered Data ONTAP
CVE-2020-8590
3.3LOW
What is CVE-2020-8590?
Clustered Data ONTAP versions prior to 9.1P18 and 9.3P12 present a vulnerability that enables unauthorized users to potentially expose sensitive node names. This occurs through AutoSupport bundles, which might reveal information even when protective parameters, such as -remove-private-data, are appropriately configured. Timely updates to the latest versions are crucial to mitigate these risks and enhance system security.
Affected Version(s)
Clustered Data ONTAP Versions prior to 9.1P18 and 9.3P12