« Back to list

Netapp

Netapp Element Software Management Node: vulnerabilities and CVEs

Netapp Element Software Management Node has 9 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs9
Last 12 months0
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2019-14287High (8.8)64%—Oct 17, 2019
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For…
CVE-2018-20449Medium (5.5)0.42%—Apr 4, 2019
The hidma_chan_stats function in drivers/dma/qcom/hidma_dbg.c in the Linux kernel 4.14.90 allows local users to obtain sensitive address information by reading "callback=" lines in a debugfs file.
CVE-2019-7222Medium (5.5)0.68%—Mar 21, 2019
The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak.
CVE-2019-7221High (7.8)0.80%—Mar 21, 2019
The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.
CVE-2018-19985Medium (4.6)0.95%—Mar 21, 2019
The function hso_get_config_data in drivers/net/usb/hso.c in the Linux kernel through 4.19.8 reads if_num from the USB device (as a u8) and uses it to index a small array, resulting in an object out-of-bounds (OOB) read…
CVE-2017-3135Medium (5.9)17%—Jan 16, 2019
Under some conditions when using both DNS64 and RPZ to rewrite query responses, query processing can resume in an inconsistent state leading to either an INSIST assertion failure or an attempt to read through a NULL…
CVE-2019-5489Medium (5.5)0.77%—Jan 7, 2019
The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of…
CVE-2018-3627High (8.2)0.56%—Jul 10, 2018
Logic bug in Intel Converged Security Management Engine 11.x may allow an attacker to execute arbitrary code via local privileged access.
CVE-2017-7657Critical (9.8)15%—Jun 26, 2018
In Eclipse Jetty, versions 9.2.x and older, 9.3.x (all configurations), and 9.4.x (non-default configuration with RFC2616 compliance enabled), transfer-encoding chunks are handled poorly. The chunk length parsing was…

Other products by Netapp