PT-2018-5898 · Netapp · Netapp Service Level Manager+1
Publicado
2018-02-23
·
Atualizado
2021-05-11
·
CVE-2017-15518
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
OnCommand API Services versions prior to 2.1
NetApp Service Level Manager versions prior to 1.0RC4
Description:
A security issue exists where privileged database user account passwords are logged. It is recommended that users upgrade to a fixed version to address this issue. The affected password is changed during every upgrade or installation, so no additional actions are required beyond updating.
Recommendations:
For OnCommand API Services versions prior to 2.1, update to version 2.1 or later.
For NetApp Service Level Manager versions prior to 1.0RC4, update to version 1.0RC4 or later.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Netapp Service Level Manager
Oncommand Api Services