CVE-2018-5495
Summary
| CVE | CVE-2018-5495 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-11-14 19:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | All StorageGRID Webscale versions are susceptible to a vulnerability which could permit an unauthenticated attacker to communicate with systems on the same network as the StorageGRID Webscale Admin Node via HTTP or to take over services on the Admin Node. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Netapp | Storagegrid Webscale | - | All | All | All |
| Application | Netapp | Storagegrid Webscale | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2018-5495 Remote Code Execution Vulnerability in StorageGRID Webscale | NetApp Product Security | CONFIRM | security.netapp.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.