Known Vulnerabilities for Oncommand Api Services by Netapp
Listed below are 10 of the newest known vulnerabilities associated with "Oncommand Api Services" by "Netapp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
CVE | Shortened Description | Severity | Publish Date | Last Modified |
---|---|---|---|---|
CVE-2021-21409 | Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high p... | 5.9 - MEDIUM | 2021-03-30 | 2022-05-12 |
CVE-2021-21295 | Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable high p... | 5.9 - MEDIUM | 2021-03-09 | 2022-05-12 |
CVE-2021-20190 | A flaw was found in jackson-databind before 2.9.10.7. FasterXML mishandles the interaction between serialization gadgets and ... | 8.1 - HIGH | 2021-01-19 | 2023-09-13 |
CVE-2020-25649 | A flaw was found in FasterXML Jackson Databind, where it did not have entity expansion secured properly. This flaw allows vul... | 7.5 - HIGH | 2020-12-03 | 2023-02-02 |
CVE-2020-11612 | The ZlibDecoders in Netty 4.1.x before 4.1.46 allow for unbounded memory allocation while decoding a ZlibEncoded byte stream.... | 7.5 - HIGH | 2020-04-07 | 2022-04-26 |
CVE-2020-10683 | dom4j before 2.0.3 and 2.1.x before 2.1.3 allows external DTDs and External Entities by default, which might enable XXE attac... | 9.8 - CRITICAL | 2020-05-01 | 2022-07-25 |
CVE-2020-8840 | FasterXML jackson-databind 2.0.0 through 2.9.10.2 lacks certain xbean-reflect/JNDI blocking, as demonstrated by org.apache.xb... | 9.8 - CRITICAL | 2020-02-10 | 2023-06-08 |
CVE-2019-16335 | A Polymorphic Typing issue was discovered in FasterXML jackson-databind before 2.9.10. It is related to com.zaxxer.hikari.Hik... | 9.8 - CRITICAL | 2019-09-15 | 2023-09-13 |
CVE-2019-14893 | A flaw was discovered in FasterXML jackson-databind in all versions before 2.9.10 and 2.10.0, where it would permit polymorph... | 9.8 - CRITICAL | 2020-03-02 | 2021-03-16 |
CVE-2019-14540 | A Polymorphic Typing issue was discovered in FasterXML jackson-databind before 2.9.10. It is related to com.zaxxer.hikari.Hik... | 9.8 - CRITICAL | 2019-09-15 | 2023-09-13 |
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Netapp | Oncommand Api Services | 2.2 | All | All | All |
Application | Netapp | Oncommand Api Services | 2.1 | All | All | All |
Application | Netapp | Oncommand Api Services | 2.0 | All | All | All |
Application | Netapp | Oncommand Api Services | - | All | All | All |