VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Netapp
>
Oncommand Insight
> Medium
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2021-05-05
CVE-2021-29489
Highcharts JS is a JavaScript charting library based on SVG.
network
low complexity
highcharts
netapp
5.4
5.4
2021-04-22
CVE-2021-2307
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Packaging).
local
low complexity
oracle
netapp
6.1
6.1
2021-04-22
CVE-2021-2178
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication).
network
low complexity
oracle
fedoraproject
netapp
6.5
6.5
2021-03-26
CVE-2021-20289
A flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final.
network
low complexity
redhat
netapp
quarkus
oracle
5.3
5.3
2021-03-25
CVE-2021-3449
NULL Pointer Dereference vulnerability in multiple products
An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client.
network
high complexity
openssl
debian
freebsd
netapp
tenable
fedoraproject
mcafee
checkpoint
oracle
sonicwall
siemens
nodejs
CWE-476
5.9
5.9
2021-03-11
CVE-2020-4976
Incorrect Default Permissions vulnerability in multiple products
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to read and write specific files due to weak file permissions.
local
low complexity
ibm
netapp
CWE-276
4.4
4.4
2021-02-16
CVE-2021-23841
NULL Pointer Dereference vulnerability in multiple products
The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate.
network
high complexity
openssl
debian
tenable
apple
netapp
oracle
siemens
CWE-476
5.9
5.9
2020-12-08
CVE-2020-1971
NULL Pointer Dereference vulnerability in multiple products
The X.509 GeneralName type is a generic type for representing different types of names.
network
high complexity
openssl
debian
fedoraproject
oracle
netapp
tenable
siemens
nodejs
CWE-476
5.9
5.9
2020-11-02
CVE-2020-25689
A memory leak flaw was found in WildFly in all versions up to 21.0.0.Final, where host-controller tries to reconnect in a loop, generating new connections which are not properly closed while not able to connect to domain-controller.
network
low complexity
redhat
netapp
6.5
6.5
2020-09-19
CVE-2020-5421
In Spring Framework versions 5.2.0 - 5.2.8, 5.1.0 - 5.1.17, 5.0.0 - 5.0.18, 4.3.0 - 4.3.28, and older unsupported versions, the protections against RFD attacks from CVE-2015-5211 may be bypassed depending on the browser used through the use of a jsessionid path parameter.
network
high complexity
vmware
oracle
netapp
6.5
6.5
«
Previous
1
2
...
4
5
6
(current)
7
8
...
28
29
»
Next