Netapp
Netapp Element Software Management Node: vulnerabilidades y CVE
Netapp Element Software Management Node tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2019-14287 | Alta (8.8) | 64% | — | 17 oct 2019 | In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For… |
| CVE-2018-20449 | Media (5.5) | 0.42% | — | 4 abr 2019 | The hidma_chan_stats function in drivers/dma/qcom/hidma_dbg.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "callback=" lines in a debugfs file. |
| CVE-2019-7222 | Media (5.5) | 0.68% | — | 21 mar 2019 | The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak. |
| CVE-2019-7221 | Alta (7.8) | 0.80% | — | 21 mar 2019 | The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free. |
| CVE-2018-19985 | Media (4.6) | 0.95% | — | 21 mar 2019 | The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB device (as a u8) and uses it to index a small array, resulting in an object out-of-bounds (OOB) read… |
| CVE-2017-3135 | Media (5.9) | 17% | — | 16 ene 2019 | Under some conditions when using both DNS64 and RPZ to rewrite query responses, query processing can resume in an inconsistent state leading to either an INSIST assertion failure or an attempt to read through a NULL… |
| CVE-2019-5489 | Media (5.5) | 0.77% | — | 7 ene 2019 | The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of… |
| CVE-2018-3627 | Alta (8.2) | 0.56% | — | 10 jul 2018 | Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access. |
| CVE-2017-7657 | Crítica (9.8) | 15% | — | 26 jun 2018 | In Eclipse Jetty, versions 9.2.x and older, 9.3.x (all configurations), and 9.4.x (non-default configuration with RFC2616 compliance enabled), transfer-encoding chunks are handled poorly. The chunk length parsing was… |
Otros productos de Netapp
Oncommand Insight · 971Active IQ Unified Manager · 848Oncommand Workflow Automation · 743Snapcenter · 575Cloud Backup · 349H700s Firmware · 293H300s Firmware · 292H500s Firmware · 292H410s Firmware · 292E-series Santricity OS Controller · 242H410c Firmware · 240Steelstore Cloud Integrated Storage · 211