CVE-2018-5487
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
NetApp OnCommand Unified Manager for Linux versions 7.2 through 7.3 ship with the Java Management Extension Remote Method Invocation (JMX RMI) service bound to the network, and are susceptible to unauthenticated remote code execution.
Affected (1)
Products: Netapp: Oncommand Unified Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 7.2 to 7.3 |
| Running on/with | Platform Versions |
|---|---|
Linux Linux Kernel | All versions |
References (2)
Source: security-alert@netapp.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Timeline
No history available yet.