7.5
CVSSv3

CVE-2013-3321

Published: 29/01/2020 Updated: 31/01/2020
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

NetApp OnCommand System Manager 2.1 and previous versions allows remote malicious users to include arbitrary files through specially crafted requests to the "diagnostic" page using the SnapMirror log path parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

netapp oncommand system manager

Exploits

NetApp onCommand System Manager versions 21 and below and 202 and below suffer from cross site scripting, file inclusion, and OS command execution vulnerabilities ...