CVE ID | Published | Description | Score | Severity |
---|---|---|---|---|
All versions of ONTAP Select Deploy administration utility are susceptible to a vulnerability which when successfully exploited could allow an administrative user to escalate their privileges. | 7.2 |
High |
||
ONTAP Select Deploy administration utility versions 2.11.2 through 2.12.2 are susceptible to a code injection vulnerability which when successfully exploited could allow an unauthenticated remote attacker to enable and use a privileged user account. | 9.8 |
Critical |
||
ONTAP Select Deploy administration utility versions 2.2 through 2.12.1 transmit credentials in plaintext. | 9.8 |
Critical |
||
ONTAP Select Deploy administration utility versions 2.12 & 2.12.1 ship with an HTTP service bound to the network allowing unauthenticated remote attackers to perform administrative actions. | 9.8 |
Critical |