Netapp
netapp
2,510 CVEs • 373 products
Products (373)
Click to collapseToggle
Products (373)
Click to collapse
CVEs (2,510)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Improper Handling of Exceptional Conditions, Uncontrolled Resource Consumption vulnerability in Apache Tomcat. When processing an HTTP/2 stream, Tomcat did not handle some cases of excessive HTTP headers correctly. This...Show more |
Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handled by mod_proxy. Users are recommended to upgrade to version 2...Show more |
2Apache Netapp2Clustered Data Ontap Http ServerJun 17, 2026 Jul 1, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request.
Users are recommended to upgrade to version 2.4.60, which fixes this issue. |
2Apache Netapp2Clustered Data Ontap Http ServerJun 17, 2026 Jul 1, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to information disclosure, SSRF or local script execution via backend applications whose response headers are malicious or exploitable. Users...Show more |
3Apache NetappSonicwall7Http Server Ontap 9Sma 200 Firmware+4 moreJun 17, 2026 Jul 1, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly...Show more |
2Apache Netapp2Clustered Data Ontap Http ServerJun 17, 2026 Jul 1, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by the configuration but not directly reachable by any URL or source disclos...Show more |
Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted requests. Users are reco...Show more |
SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue. N...Show more |
Serving WebSocket protocol upgrades over a HTTP/2 connection could result in a Null Pointer dereference, leading to a crash of the server process, degrading performance. |
13Almalinux AmazonApple+10 more53500f Firmware 8300 Firmware8700 Firmware+50 moreJun 17, 2026 Jul 1, 2024 N/A· v4 8.1 HIGH· v3 N/A· v2 A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able t...Show more |
3Debian NetappPython3Active Iq Unified Manager Debian LinuxUrllib3Jun 17, 2026 Jun 17, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 urllib3 is a user-friendly HTTP client library for Python. When using urllib3's proxy support with `ProxyManager`, the `Proxy-Authorization` header is only sent to the configured proxy, as expected. However, when sendin...Show more |
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.7.0.9 and 11.8.0.5 are susceptible to disclosure of sensitive information via complex MiTM attacks due to a vulnerability in the SSH cryptographic imple...Show more |
2Linux Netapp10Converged Systems Advisor Agent H300s FirmwareH410c Firmware+7 moreJun 17, 2026 May 30, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix nfsd4_encode_fattr4() crasher Ensure that args.acl is initialized early. It is used in an unconditional call to kfree() on the way out of nf...Show more |
2Intel Netapp2Hci Compute Node Bios Tdx ModuleJun 17, 2026 May 16, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access. |
2Intel Netapp2Hci Compute Node Bios Tdx ModuleJun 17, 2026 May 16, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access. |
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover cre...Show more |
4Debian FedoraprojectGnome+1 more4Debian Linux FedoraGlib+1 moreJun 17, 2026 May 7, 2024 N/A· v4 5.2 MEDIUM· v3 N/A· v2 An issue was discovered in GNOME GLib before 2.78.5, and 2.79.x and 2.80.x before 2.80.1. When a GDBus-based client subscribes to signals from a trusted system service such as NetworkManager on a shared computer, other u...Show more |
3Debian GnuNetapp11Debian Linux Element SoftwareGlibc+8 moreJun 17, 2026 May 6, 2024 N/A· v4 7.4 HIGH· v3 N/A· v2 nscd: netgroup cache assumes NSS callback uses in-buffer strings The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw...Show more |
3Debian GnuNetapp11Debian Linux GlibcH300s Firmware+8 moreJun 17, 2026 May 6, 2024 N/A· v4 7.3 HIGH· v3 N/A· v2 nscd: netgroup cache may terminate daemon on memory allocation failure The Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or xrealloc and these functions may terminate the process due to a memory allocat...Show more |
3Debian GnuNetapp12Active Iq Unified Manager Debian LinuxGlibc+9 moreJun 17, 2026 May 6, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference. T...Show more |