Netapp
netapp
2,510 CVEs • 373 products
Products (373)
Click to collapseToggle
Products (373)
Click to collapse
CVEs (2,510)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Mit Netapp8Active Iq Unified Manager Cloud Volumes Ontap MediatorH610c Firmware+5 moreJun 17, 2026 Feb 29, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c. |
2Mit Netapp9Active Iq Unified Manager Cloud Volumes Ontap MediatorH610c Firmware+6 moreJun 17, 2026 Feb 29, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c. |
2Mit Netapp9Active Iq Unified Manager Cloud Volumes Ontap MediatorH610c Firmware+6 moreJun 17, 2026 Feb 29, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c. |
3Debian EclipseNetapp4Active Iq Unified Manager BluexpDebian Linux+1 moreJun 17, 2026 Feb 26, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Jetty is a Java based web server and servlet engine. An HTTP/2 SSL connection that is established and TCP congested will be leaked when it times out. An attacker can cause many connections to end up in this state, and th...Show more |
2Ibm Netapp2Cognos Analytics Oncommand InsightJun 17, 2026 Feb 26, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially...Show more |
2Ibm Netapp2Cognos Analytics Oncommand InsightJun 17, 2026 Feb 26, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially...Show more |
2Ibm Netapp2Cognos Analytics Oncommand InsightJun 17, 2026 Feb 26, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to form action hijacking where it is possible to modify the form action to reference an arbitrary path. IBM X-Force ID: 255898. |
2Ibm Netapp2Cognos Analytics Oncommand InsightJun 17, 2026 Feb 26, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages sent between Windows objects of different origins. IBM X-Force ID: 254290. |
2Ibm Netapp2Cognos Analytics Oncommand InsightJun 17, 2026 Feb 26, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or absence of rate limiting. By making unlimited http requests, it is possible for a single user to exha...Show more |
2Linux Netapp2Linux Kernel Ontap ToolsJun 17, 2026 Feb 20, 2024 N/A· v4 4.4 MEDIUM· v3 N/A· v2 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction New elements in this transaction might expired before such transaction en...Show more |
2Netapp Nodejs2Astra Control Center Node.jsJun 17, 2026 Feb 20, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability in Node.js HTTP servers allows an attacker to send a specially crafted HTTP request with chunked encoding, leading to resource exhaustion and denial of service (DoS). The server reads an unbounded number...Show more |
2Netapp Redhat9Active Iq Unified Manager FuseIntegration Camel For Spring Boot+6 moreJun 17, 2026 Feb 19, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user opens and closes a connection with the HTTP port of the server and then...Show more |
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a difficult to exploit Reflected Cross-Site Scripting (XSS) vulnerability. Successful exploit requires the attacker to know specifi...Show more |
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a Denial of Service (DoS) vulnerability. Successful exploit by an authenticated attacker could lead to an out of memory condition o...Show more |
SnapCenter versions 4.8 prior to 5.0 are susceptible to a
vulnerability which could allow an authenticated SnapCenter Server user
to modify system logging configuration settings
|
Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Collapse of Data into Unsafe Value bug ,Squid may be vulnerable to a Denial of Service attack against HTTP header parsing....Show more |
6Debian FedoraprojectIsc+3 more8Active Iq Unified Manager BindBootstrap Os+5 moreJun 17, 2026 Feb 14, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 The Closest Encloser Proof aspect of the DNS protocol (in RFC 5155 when RFC 9276 guidance is skipped) allows remote attackers to cause a denial of service (CPU consumption for SHA-1 computations) via DNSSEC responses in...Show more |
2Intel Netapp3Hci Bootstrap Os Hci Compute Node BiosServer Platform ServicesJun 17, 2026 Feb 14, 2024 N/A· v4 4.9 MEDIUM· v3 N/A· v2 Uncontrolled resource consumption for some Intel(R) SPS firmware before version SPS_E5_06.01.04.002.0 may allow a privileged user to potentially enable denial of service via network access. |
2Isc Netapp2Active Iq Unified Manager BindJun 17, 2026 Feb 13, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 To keep its cache database efficient, `named` running as a recursive resolver occasionally attempts to clean up the database. It uses several methods, including some that are asynchronous: a small chunk of memory pointin...Show more |
2Isc Netapp2Active Iq Unified Manager BindJun 17, 2026 Feb 13, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 If a resolver cache has a very large number of ECS records stored for the same name, the process of cleaning the cache database node for this name can significantly impair query performance. This issue affects BIND 9 ve...Show more |