NetApp Products Multiple Vulnerabilities
Release Date:
31 May 2021
5305
Views
RISK: Medium Risk
TYPE: Servers - Other Servers
Multiple vulnerabilities were identified in NetApp Products, a remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, obtain sensitive information and data manipulation on the targeted system.
Impact
- Denial of Service
- Information Disclosure
- Data Manipulation
System / Technologies affected
- E-Series SANtricity OS Controller Baseboard Management Controller (BMC) - EF600A
- FAS/AFF Baseboard Management Controller (BMC) - A250/500f
- OnCommand Insight
- NetApp E-Series Performance Analyzer
- Brocade Fabric Operating System Firmware
- NetApp Cloud Backup (formerly AltaVault)
- ONTAP Select Deploy administration utility
Solutions
Before installation of the software, please visit the vendor web-site for more details.
- Apply fixes issued by the vendor. For detail, please refer to the link below:
https://security.netapp.com/advisory/ntap-20210521-0006/
https://security.netapp.com/advisory/ntap-20210528-0006/
https://security.netapp.com/advisory/ntap-20210528-0007/
https://security.netapp.com/advisory/ntap-20210528-0008/
https://security.netapp.com/advisory/ntap-20210528-0009/
Vulnerability Identifier
Source
Related Link
- https://www.securitywizardry.com/the-radar-page/alert-details#alerts
- https://security.netapp.com/advisory/
- https://security.netapp.com/advisory/ntap-20210521-0006/
- https://security.netapp.com/advisory/ntap-20210528-0006/
- https://security.netapp.com/advisory/ntap-20210528-0007/
- https://security.netapp.com/advisory/ntap-20210528-0008/
- https://security.netapp.com/advisory/ntap-20210528-0009/
Share with