Vulnerability Details CVE-2022-38732
SnapCenter versions prior to 4.7 shipped without Content Security Policy (CSP) implemented which could allow certain types of attacks that otherwise would be prevented.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.1%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-38732
-
cpe:2.3:a:netapp:snapcenter:-
-
cpe:2.3:a:netapp:snapcenter:1.0
-
cpe:2.3:a:netapp:snapcenter:1.0.1
-
cpe:2.3:a:netapp:snapcenter:1.1
-
cpe:2.3:a:netapp:snapcenter:2.0
-
cpe:2.3:a:netapp:snapcenter:3.0
-
cpe:2.3:a:netapp:snapcenter:3.0.1
-
cpe:2.3:a:netapp:snapcenter:4.0
-
cpe:2.3:a:netapp:snapcenter:4.1
-
cpe:2.3:a:netapp:snapcenter:4.1.1
-
cpe:2.3:a:netapp:snapcenter:4.2
-
cpe:2.3:a:netapp:snapcenter:4.2.1
-
cpe:2.3:a:netapp:snapcenter:4.3
-
cpe:2.3:a:netapp:snapcenter:4.3.1
-
cpe:2.3:a:netapp:snapcenter:4.3.2
-
cpe:2.3:a:netapp:snapcenter:4.4
-
cpe:2.3:a:netapp:snapcenter:4.5