PT-2018-16992 · Netapp · Storagegrid Webscale

Published

2018-11-14

·

Updated

2019-10-03

·

CVE-2018-5495

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions StorageGRID Webscale versions (all versions)
Description The issue allows an unauthenticated attacker to communicate with systems on the same network as the StorageGRID Webscale Admin Node via HTTP or to take over services on the Admin Node.
Recommendations For all affected versions, apply the recommended fix from the vendor to prevent unauthorized access and service takeover. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-5495

Affected Products

Storagegrid Webscale