netapp
2,510 tracked vulnerabilities.
CVE-2019-9021
CRITICAL
PHP < 5.6.40 - Heap-Based Buffer Over-Read in PHAR File Name Parsing
Feb 22, 2019
CVSS 9.8
EPSS 0.25
CVE-2019-9020
CRITICAL
PHP < 5.6.40, 7.x < 7.1.26, 7.2.x < 7.2.14, 7.3.x < 7.3.1 - Out-of-bounds Read in xmlrpc_decode
Feb 22, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-9003
HIGH
Linux Kernel < 4.20.5 - Use-After-Free in IPMI Message Handler
Feb 22, 2019
CVSS 7.5
EPSS 0.07
CVE-2019-5736
HIGH
Docker Container Escape Via runC Overwrite
Feb 11, 2019
CVSS 8.6
EPSS 0.59
CVE-2019-3823
MEDIUM
libcurl 7.34.0-7.63.0 - Heap Out-of-Bounds Read in SMTP Response Handler
Feb 06, 2019
CVSS 4.3
EPSS 0.02
CVE-2019-3822
CRITICAL
libcurl 7.36.0-7.63.0 - Stack-based Buffer Overflow in NTLM Type-3 Header Generation
Feb 06, 2019
CVSS 9.8
EPSS 0.18
CVE-2019-7317
MEDIUM
libpng 1.6.0-1.6.36 - Use-After-Free in png_image_free
Feb 04, 2019
CVSS 5.3
EPSS 0.01
CVE-2019-6110
MEDIUM
OpenSSH < 7.9 - Terminal Output Manipulation via ANSI Control Codes
Jan 31, 2019
CVSS 6.8
EPSS 0.58
CVE-2019-6109
MEDIUM
OpenSSH < 7.9 - Terminal Output Manipulation via ANSI Control Codes in Progress Display
Jan 31, 2019
CVSS 6.8
EPSS 0.10
CVE-2019-3462
HIGH
advanced_package_tool <= 1.4.8 - Remote Code Execution via HTTP Redirect Field Injection
Jan 28, 2019
CVSS 8.1
EPSS 0.07
CVE-2019-6977
HIGH
GD Graphics Library <2.2.5 - Buffer Overflow
Jan 27, 2019
CVSS 8.8
EPSS 0.88
CVE-2019-6260
CRITICAL
ASPEED ast2400/2500 - Info Disclosure
Jan 22, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-2539
MEDIUM
MySQL Server < 8.0.13 - Authenticated Denial of Service via Connection Subcomponent
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2537
MEDIUM
MySQL Server < 5.6.42, 5.7.24, 8.0.13 - Authenticated Denial of Service in DDL Subcomponent
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2536
MEDIUM
Oracle MySQL <8.0.13 - Privilege Escalation
Jan 16, 2019
CVSS 5.0
EPSS 0.00
CVE-2019-2535
MEDIUM
MySQL Server < 8.0.13 - Authenticated Denial of Service in Server Options
Jan 16, 2019
CVSS 4.1
EPSS 0.00
CVE-2019-2534
HIGH
MySQL <5.6.42, 5.7.24, 8.0.13 - Unauthorized Access
Jan 16, 2019
CVSS 7.1
EPSS 0.00
CVE-2019-2533
MEDIUM
Oracle MySQL <8.0.13 - Privilege Escalation
Jan 16, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-2532
MEDIUM
Oracle MySQL <8.0.13 - Privilege Escalation
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2531
MEDIUM
MySQL Server < 5.6.42, 5.7.24, 8.0.13 - Authenticated Denial of Service via Replication
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2530
MEDIUM
MySQL Server < 8.0.13 - Authenticated Denial of Service in Optimizer
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2529
MEDIUM
Oracle MySQL <5.6.43, <5.7.25, <8.0.14 - DoS
Jan 16, 2019
CVSS 6.5
EPSS 0.00
CVE-2019-2513
LOW
Oracle MySQL <8.0.13 - Privilege Escalation
Jan 16, 2019
CVSS 2.5
EPSS 0.00
CVE-2019-2510
MEDIUM
MySQL Server < 5.7.24 and 8.0 <= 8.0.13 - Authenticated Denial of Service in InnoDB
Jan 16, 2019
CVSS 4.9
EPSS 0.00
CVE-2019-2503
MEDIUM
MySQL <5.6.43, 5.7.25, 8.0.14 - Privilege Escalation
Jan 16, 2019
CVSS 6.4
EPSS 0.00
Products
oncommand_insight 971
active_iq_unified_manager 848
oncommand_workflow_automation 743
snapcenter 575
cloud_backup 345
h700s_firmware 289
h300s_firmware 288
h410s_firmware 288
h500s_firmware 288
e-series_santricity_os_controller 242
h410c_firmware 236
steelstore_cloud_integrated_storage 211
solidfire 192
clustered_data_ontap 187
hci_management_node 182
snapmanager 180
ontap_select_deploy_administration_utility 179
oncommand_unified_manager 169
h700e_firmware 149
h300e_firmware 148
h500e_firmware 148
e-series_santricity_storage_manager 140
storage_automation_store 113
solidfire_\&_hci_management_node 103
element_software 100
e-series_santricity_web_services 99
oncommand_balance 83
santricity_unified_manager 77
7-mode_transition_tool 75
oncommand_performance_manager 73
Quick Filters