QID 38858

Date Published: 2022-02-11

QID 38858: NetApp Clustered Data Open Network Technology for Appliance Products (ONTAP) Sensitive Information Disclosure Vulnerability (NTAP-20210303-0001)

NetApp Data ONTAP is a data management software which allows unifying storage infrastructures across flash, disk, and cloud.

Clustered Data ONTAP versions are susceptible to a vulnerability which discloses sensitive information to an unauthorized user.

Affected Versions:
Clustered Data ONTAP versions prior to 9.3P21, 9.5P16, 9.6P12, 9.7P8 and 9.8

Successful exploitation of this vulnerability could lead to disclosure of sensitive information.

  • CVSS V3 rated as Medium - 3.5 severity.
  • CVSS V2 rated as Low - 2.7 severity.
  • Solution

    Customers are advised to refer to NTAP-20210303-0001 for more information about patching this vulnerability.

    Vendor References

    CVEs related to QID 38858

    Software Advisories
    Advisory ID Software Component Link
    NTAP-20210303-0001 URL Logo security.netapp.com/advisory/ntap-20210303-0001/