Vulnerabilities
Vulnerable Software
NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.
CVSS Score
5.3
EPSS Score
0.001
Published
2019-03-04
NetApp SnapCenter Server prior to 4.0 is susceptible to cross site scripting vulnerability that could allow a privileged user to inject arbitrary scripts into the custom secondary policy label field.
CVSS Score
4.8
EPSS Score
0.002
Published
2019-03-04
NetApp SnapCenter Server 1.0 allows remote authenticated users to list and delete backups.
CVSS Score
8.1
EPSS Score
0.001
Published
2017-08-07
NetApp SnapCenter Server 1.0 and 1.0P1 allows remote attackers to partially bypass authentication and then list and delete backups via unspecified vectors.
CVSS Score
7.3
EPSS Score
0.001
Published
2017-02-07


Contact Us

Shodan ® - All rights reserved