PT-2018-5899 · Netapp · Snapcenter

Published

2018-03-06

·

Updated

2019-10-03

·

CVE-2017-15519

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: SnapCenter versions 2.0 through 3.0.1
Description: The issue allows unauthenticated remote attackers to view and modify backup related data via the Plug-in for NAS File Services.
Recommendations: For versions 2.0 through 3.0.1, upgrade to version 4.0 following the product documentation. For version 3.0.1, perform the mitigation steps as outlined in the product documentation.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-15519

Affected Products

Snapcenter