PT-2021-12801 · Netapp · Clustered Data Ontap

Published

2021-02-03

·

Updated

2021-02-08

·

CVE-2020-8589

CVSS v3.1

3.5

Low

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15
Description: The issue allows unauthorized tenant users to discover the names of other Storage Virtual Machines (SVMs) and filenames on those SVMs.
Recommendations: For versions prior to 9.3P20, update to version 9.3P20 or later. For versions prior to 9.5P15, update to version 9.5P15 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-8589

Affected Products

Clustered Data Ontap