NetApp SnapCenter Server 2.0

CPE Details

NetApp SnapCenter Server 2.0
2.0
2019-07-03
15h46 +00:00
2019-07-03
15h46 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:netapp:snapcenter_server:2.0:*:*:*:*:*:*:*

Informations

Vendor

netapp

Product

snapcenter_server

Version

2.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-5482 2019-03-04 23h00 +00:00 NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.
5.3
Medium
CVE-2017-15515 2019-03-04 22h00 +00:00 NetApp SnapCenter Server prior to 4.0 is susceptible to cross site scripting vulnerability that could allow a privileged user to inject arbitrary scripts into the custom secondary policy label field.
4.8
Medium
CVE-2017-15519 2018-03-06 20h00 +00:00 Versions of SnapCenter 2.0 through 3.0.1 allow unauthenticated remote attackers to view and modify backup related data via the Plug-in for NAS File Services. All users are urged to move to version 3.0.1 and perform the mitigation steps or upgrade to 4.0 following the product documentation.
7.2
High
CVE-2017-15516 2017-11-16 22h00 +00:00 NetApp SnapCenter Server versions 1.1 through 2.x are susceptible to a Cross-Site Request Forgery (CSRF) vulnerability which could be used to cause an unintended authenticated action in the user interface.
8.8
High