netapp
2,510 tracked vulnerabilities.
CVE-2023-23914
CRITICAL
curl < 7.88.0 - Cleartext Transmission of Sensitive Information via HSTS State Mismanagement
Feb 23, 2023
CVSS 9.1
EPSS 0.00
CVE-2023-0482
MEDIUM
RESTEasy - Insecure Temporary File Permissions in DataSourceProvider, FileProvider, and Mime4JWorkaround
Feb 17, 2023
CVSS 5.5
EPSS 0.00
CVE-2023-24329
HIGH
Python < 3.11.4 - URL Blocklist Bypass via Leading Blank Characters in urllib.parse
Feb 17, 2023
CVSS 7.5
EPSS 0.01
CVE-2023-0361
HIGH
GnuTLS - Timing Side-Channel in RSA ClientKeyExchange Handling
Feb 15, 2023
CVSS 7.4
EPSS 0.04
CVE-2023-25136
MEDIUM
OpenSSH 9.1 - Unauthenticated Double Free in KEX Algorithms Handling
Feb 03, 2023
CVSS 6.5
EPSS 0.88
CVE-2023-23559
HIGH
Linux Kernel 2.6.35-4.14.305 - Integer Overflow in rndis_query_oid
Jan 13, 2023
CVSS 7.8
EPSS 0.00
CVE-2022-34357
MEDIUM
Netapp Oncommand Insight < 11.1.7 - Resource Allocation Without Limits
Feb 26, 2024
CVSS 6.5
EPSS 0.00
CVE-2022-48566
MEDIUM
Python < 3.6.13 - Timing Attack via hmac.compare_digest
Aug 22, 2023
CVSS 5.9
EPSS 0.00
CVE-2022-48564
MEDIUM
Python < 3.6.13 - Denial of Service via Malformed Binary Property List Processing
Aug 22, 2023
CVSS 6.5
EPSS 0.00
CVE-2022-48065
MEDIUM
GNU Binutils < 2.40 - Use-After-Free in find_abstract_instance
Aug 22, 2023
CVSS 5.5
EPSS 0.00
CVE-2022-48064
MEDIUM
GNU Binutils < 2.40 - Denial of Service via bfd_dwarf2_find_nearest_line_with_alt
Aug 22, 2023
CVSS 5.5
EPSS 0.00
CVE-2022-40982
MEDIUM
Intel(R) Processors - Info Disclosure
Aug 11, 2023
CVSS 6.5
EPSS 0.01
CVE-2022-28734
HIGH
GRUB2 2.00-2.06-2 - Out-of-bounds Write via Split HTTP Header Handling
Jul 20, 2023
CVSS 8.1
EPSS 0.00
CVE-2022-48502
HIGH
Linux Kernel < 6.2 - Out-of-bounds Read in NTFS3 Disk Read Handling
May 31, 2023
CVSS 7.1
EPSS 0.00
CVE-2022-38734
HIGH
StorageGRID < 11.6.0.8 - Denial of Service via Local Distribution Router Crash
Mar 02, 2023
CVSS 7.5
EPSS 0.00
CVE-2022-23240
MEDIUM
Active IQ Unified Manager < 9.11P1 - Unauthenticated EMS Subscription Update
Feb 28, 2023
CVSS 6.5
EPSS 0.00
CVE-2022-23239
MEDIUM
Active IQ Unified Manager < 9.11P1 - Authenticated Stored Cross-Site Scripting
Feb 28, 2023
CVSS 4.8
EPSS 0.00
CVE-2022-41858
HIGH
Linux Kernel < 4.9.311 - NULL Pointer Dereference in SLIP Driver Detach
Jan 17, 2023
CVSS 7.1
EPSS 0.00
CVE-2022-43551
HIGH
curl < 7.87.0 - Cleartext Transmission of Sensitive Information via HSTS Bypass
Dec 23, 2022
CVSS 7.5
EPSS 0.00
CVE-2022-38733
HIGH
OnCommand Insight <7.3.14 - Auth Bypass
Dec 20, 2022
CVSS 8.6
EPSS 0.00
CVE-2022-47521
HIGH
Linux Kernel < 6.0.11 - Heap-Based Buffer Overflow in WILC1000 Wireless Driver via IEEE80211_P2P_ATTR_CHANNEL_LIST
Dec 18, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-47520
HIGH
Linux Kernel < 6.0.11 - Out-of-bounds Read in WILC1000 Wireless Driver via RSN Information Element
Dec 18, 2022
CVSS 7.1
EPSS 0.00
CVE-2022-47519
HIGH
Linux Kernel < 6.0.11 - Out-of-bounds Write in WILC1000 Wireless Driver via IEEE80211_P2P_ATTR_OPER_CHANNEL
Dec 18, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-47518
HIGH
Linux Kernel < 6.0.11 - Heap-Based Buffer Overflow in WILC1000 Wireless Driver
Dec 18, 2022
CVSS 7.8
EPSS 0.00
CVE-2022-23491
MEDIUM
certifi 2017.11.5-2022.12.7 - Insufficient Verification of Data Authenticity
Dec 07, 2022
CVSS 6.8
EPSS 0.00
Products
oncommand_insight 971
active_iq_unified_manager 848
oncommand_workflow_automation 743
snapcenter 575
cloud_backup 345
h700s_firmware 289
h300s_firmware 288
h410s_firmware 288
h500s_firmware 288
e-series_santricity_os_controller 242
h410c_firmware 236
steelstore_cloud_integrated_storage 211
solidfire 192
clustered_data_ontap 187
hci_management_node 182
snapmanager 180
ontap_select_deploy_administration_utility 179
oncommand_unified_manager 169
h700e_firmware 149
h300e_firmware 148
h500e_firmware 148
e-series_santricity_storage_manager 140
storage_automation_store 113
solidfire_\&_hci_management_node 103
element_software 100
e-series_santricity_web_services 99
oncommand_balance 83
santricity_unified_manager 77
7-mode_transition_tool 75
oncommand_performance_manager 73
Quick Filters