Known Vulnerabilities for Solidfire Baseboard Management Controller Firmware by Netapp

Listed below are 10 of the newest known vulnerabilities associated with "Solidfire Baseboard Management Controller Firmware" by "Netapp".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-22947 When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS securi... 5.9 - MEDIUM 2021-09-29 2023-01-05
CVE-2021-22946 A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP ser... 7.5 - HIGH 2021-09-29 2023-01-05
CVE-2021-22945 When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to a... 9.1 - CRITICAL 2021-09-23 2022-12-22
CVE-2021-22924 libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the s... 3.7 - LOW 2021-08-05 2022-10-28
CVE-2021-22901 curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when a TL... 8.1 - HIGH 2021-06-11 2022-05-13
CVE-2021-22897 curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SS... 5.3 - MEDIUM 2021-06-11 2022-08-30
CVE-2021-22543 An issue was discovered in Linux: KVM through Improper handling of VM_IO|VM_PFNMAP vmas in KVM can bypass RO checks and can l... 7.8 - HIGH 2021-05-26 2022-04-01
CVE-2021-3612 An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in ... 7.8 - HIGH 2021-07-09 2023-01-11
CVE-2021-3506 An out-of-bounds (OOB) memory access flaw was found in fs/f2fs/node.c in the f2fs module in the Linux kernel in versions befo... 7.1 - HIGH 2021-04-19 2022-01-21
CVE-2021-3501 A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an ar... 7.1 - HIGH 2021-05-06 2022-05-13

Popular searches for Solidfire Baseboard Management Controller Firmware

CVE-2019-17274 Default Privileged Account Vulnerability in the NetApp FAS 8300/8700 and AFF A400 Baseboard Management Controller | NetApp Product Security

security.netapp.com/advisory/ntap-20200226-0001

E-2019-17274 Default Privileged Account Vulnerability in the NetApp FAS 8300/8700 and AFF A400 Baseboard Management Controller | NetApp Product Security NetApp FAS 8300/8700 and AFF A400 Baseboard Management Controller BMC firmware P1 were shipped with a default account enabled that could allow unauthorized arbitrary command execution via local access.

NetApp Intelligent Platform Management Interface NetApp FAS Vulnerability (computing) Common Vulnerabilities and Exposures PowerQUICC Firmware ONTAP Command (computing) Computer data storage Software Patch (computing) Plug-in (computing) BMC Software Computer security Cloud computing Operating system C.D. FAS User (computing) VMware vSphere

CVE-2020-8573 Default Account Vulnerability in the NetApp HCI Baseboard Management Controller (BMC) - H610C, H615C and H610S | NetApp Product Security

security.netapp.com/advisory/ntap-20200626-0001

E-2020-8573 Default Account Vulnerability in the NetApp HCI Baseboard Management Controller BMC - H610C, H615C and H610S | NetApp Product Security The NetApp HCI H610C, H615C and H610S Baseboard Management Controllers BMC are shipped with a documented default account and password that should be changed during the initial node setup.

During upgrades to Element 11.8 and 12.0 or the Compute Firmware Bundle 12.2.92 the BMC account password on the H610C, H615C and H610S platforms is reset to the default documented value which could allow remote attackers to cause a Denial of Service DoS .

NetApp Intelligent Platform Management Interface Human–computer interaction Common Vulnerabilities and Exposures Password Vulnerability (computing) BMC Software XML Compute! Firmware Denial-of-service attack Software Computing platform Node (networking) ONTAP Patch (computing) Computer security Reset (computing) Plug-in (computing) User (computing)

© CVE.report 2023 Twitter Nitter Twitter Viewer |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report