Vulnerabilities > CVE-2016-3997 - 7PK - Security Features vulnerability in Netapp Clustered Data Ontap 8.3.1

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
high complexity
netapp
CWE-254

Summary

NetApp Clustered Data ONTAP allows man-in-the-middle attackers to obtain sensitive information, gain privileges, or cause a denial of service by leveraging failure to enable SMB signing enforcement in its default state.

Vulnerable Configurations

Part Description Count
Application
Netapp
1

Common Weakness Enumeration (CWE)