PT-2018-16992 · Netapp · Storagegrid Webscale
Published
2018-11-14
·
Updated
2019-10-03
·
CVE-2018-5495
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
StorageGRID Webscale versions (all versions)
Description
The issue allows an unauthenticated attacker to communicate with systems on the same network as the StorageGRID Webscale Admin Node via HTTP or to take over services on the Admin Node.
Recommendations
For all affected versions, apply the recommended fix from the vendor to prevent unauthorized access and service takeover. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Storagegrid Webscale