PT-2023-16750 · Netapp · Snapcenter
Published
2023-05-12
·
Updated
2025-01-27
·
CVE-2023-1096
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SnapCenter versions 4.7 prior to 4.7P2
SnapCenter versions 4.8 prior to 4.8P1
Description
The issue allows a remote unauthenticated attacker to gain access as an admin user.
Recommendations
For SnapCenter versions 4.7 prior to 4.7P2, update to 4.7P2 or later.
For SnapCenter versions 4.8 prior to 4.8P1, update to 4.8P1 or later.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Snapcenter