PT-2018-5898 · Netapp · Netapp Service Level Manager+1

Publicado

2018-02-23

·

Atualizado

2021-05-11

·

CVE-2017-15518

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: OnCommand API Services versions prior to 2.1 NetApp Service Level Manager versions prior to 1.0RC4
Description: A security issue exists where privileged database user account passwords are logged. It is recommended that users upgrade to a fixed version to address this issue. The affected password is changed during every upgrade or installation, so no additional actions are required beyond updating.
Recommendations: For OnCommand API Services versions prior to 2.1, update to version 2.1 or later. For NetApp Service Level Manager versions prior to 1.0RC4, update to version 1.0RC4 or later.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-15518

Produtos afetados

Netapp Service Level Manager
Oncommand Api Services