Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
netapp active iq vulnerabilities and exploits
(subscribe to this query)
5.3
CVSSv3
CVE-2022-23235
Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions before 9.10P1 are susceptible to a vulnerability which could allow an malicious user to discover cluster, node and Active IQ Unified Manager specific information via AutoSupport telemetry data tha...
Netapp Active Iq Unified Manager 9.10
Netapp Active Iq Unified Manager
4.8
CVSSv3
CVE-2022-23239
Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions before 9.11P1 are susceptible to a vulnerability which allows administrative users to perform a Stored Cross-Site Scripting (XSS) attack.
Netapp Active Iq Unified Manager
6.5
CVSSv3
CVE-2022-23240
Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions before 9.11P1 are susceptible to a vulnerability which allows unauthorized users to update EMS Subscriptions via unspecified vectors.
Netapp Active Iq Unified Manager
7.8
CVSSv3
CVE-2020-8574
Active IQ Unified Manager for Linux versions before 9.6 ship with the Java Management Extension Remote Method Invocation (JMX RMI) service enabled allowing unauthorized code execution to local users.
Netapp Active Iq Unified Manager
4.4
CVSSv3
CVE-2020-8575
Active IQ Unified Manager for VMware vSphere and Windows versions before 9.5 are susceptible to a vulnerability which allows administrative users to cause Denial of Service (DoS).
Netapp Active Iq Unified Manager
3.3
CVSSv3
CVE-2018-20855
An issue exists in the Linux kernel prior to 4.18.7. In create_qp_common in drivers/infiniband/hw/mlx5/qp.c, mlx5_ib_create_qp_resp was never initialized, resulting in a leak of stack memory to userspace.
Linux Linux Kernel
Opensuse Leap 15.0
Opensuse Leap 15.1
Netapp Active Iq Performance Analytics Services -
Netapp Active Iq Unified Manager
Netapp Data Availability Services -
Netapp Element Software -
5.5
CVSSv3
CVE-2023-45862
An issue exists in drivers/usb/storage/ene_ub6250.c for the ENE UB6250 reader driver in the Linux kernel prior to 6.2.5. An object could potentially extend beyond the end of an allocation.
Linux Linux Kernel
Netapp Active Iq Unified Manager -
Netapp H410c Firmware -
4.9
CVSSv3
CVE-2022-21412
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.28 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Ser...
Oracle Mysql
Netapp Snapcenter -
Netapp Oncommand Insight -
Netapp Active Iq Unified Manager -
6.3
CVSSv3
CVE-2022-21483
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.4.35 and prior, 7.5.25 and prior, 7.6.21 and prior and 8.0.28 and prior. Difficult to exploit vulnerability allows high privileged attacker with ac...
Oracle Mysql
Netapp Snapcenter -
Netapp Oncommand Insight -
Netapp Active Iq Unified Manager -
4.4
CVSSv3
CVE-2022-21444
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 5.7.37 and prior and 8.0.28 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to com...
Oracle Mysql
Netapp Snapcenter -
Netapp Oncommand Insight -
Netapp Active Iq Unified Manager -
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »