CVE-2017-15519
Last modified
CVE-2017-15519 is a vulnerability of currently unknown severity. Versions of SnapCenter 2.0 through 3.0.1 allow unauthenticated remote attackers to view and modify backup related data via the Plug-in for NAS File Services. All users are urged to move to version 3.0.1 and perform the mitigation steps or upgrade to 4.0 following the product documentation.. EPSS estimates a 1.20% chance of exploitation in the next 30 days.
Description
Versions of SnapCenter 2.0 through 3.0.1 allow unauthenticated remote attackers to view and modify backup related data via the Plug-in for NAS File Services. All users are urged to move to version 3.0.1 and perform the mitigation steps or upgrade to 4.0 following the product documentation.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Netapp | Snapcenter Server | >= 2.0, <= 3.0.1 |
References
- https://security.netapp.com/advisory/ntap-20180306-0001/Mitigation, Vendor Advisory
- https://security.netapp.com/advisory/ntap-20180306-0001/Mitigation, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-15519?
How severe is CVE-2017-15519?
How do I fix CVE-2017-15519?
Are you affected by CVE-2017-15519?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
