NetApp Data ONTAP 8.0.4

CPE Details

NetApp Data ONTAP 8.0.4
8.0.4
2019-11-27
18h45 +00:00
2019-11-27
18h45 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:netapp:data_ontap:8.0.4:*:*:*:*:*:*:*

Informations

Vendor

netapp

Product

data_ontap

Version

8.0.4

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-5502 2019-08-05 16h48 +00:00 SMB in Data ONTAP operating in 7-Mode versions prior to 8.2.5P3 has weak cryptography which when exploited could lead to information disclosure or addition or modification of data.
9.1
Critical
CVE-2019-5501 2019-08-02 12h55 +00:00 Data ONTAP operating in 7-Mode versions prior to 8.2.5P3 may disclose sensitive LDAP account information to unauthenticated remote attackers.
7.5
High
CVE-2019-5493 2019-08-02 12h37 +00:00 Data ONTAP operating in 7-Mode versions prior to 8.2.5P3 are susceptible to a vulnerability which discloses information to an unauthenticated attacker. A successful attack requires that multiple non-default options be enabled.
7.5
High
CVE-2018-5496 2018-12-04 19h00 +00:00 Data ONTAP operating in 7-Mode versions prior to 8.2.5P2 are susceptible to a vulnerability which discloses sensitive information to an unauthorized user.
4.4
Medium
CVE-2017-12859 2017-08-18 14h00 +00:00 NetApp Data ONTAP before 8.2.5, when operating in 7-Mode in NFS environments, allows remote attackers to cause a denial of service via unspecified vectors.
5.9
Medium
CVE-2016-6495 2017-02-07 16h00 +00:00 NetApp Data ONTAP before 8.2.4P5, when operating in 7-Mode, allows remote attackers to obtain information about the volumes configured for HTTP access.
5.9
Medium
CVE-2015-7886 2016-01-18 01h00 +00:00 NetApp Data ONTAP before 8.2.4P1, when 7-Mode and HTTP access are enabled, allows remote attackers to obtain sensitive volume information via unspecified vectors.
3.7
Low
CVE-2008-3349 2008-07-28 15h00 +00:00 Multiple unspecified vulnerabilities in NetApp Data ONTAP, as used on NetApp and IBM eServer platforms, allow remote attackers to execute arbitrary commands, cause a denial of service (system crash), or obtain sensitive information, probably related to insufficient access control for HTTP requests. NOTE: this may overlap CVE-2008-3160.
10