VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
> Netapp
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-03-03
CVE-2021-3609
.A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the CAN subsystem to corrupt memory, crash the system or escalate privileges.
local
high complexity
linux
redhat
netapp
7.0
7.0
2022-03-03
CVE-2022-0492
Missing Authorization vulnerability in multiple products
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function.
local
low complexity
linux
debian
redhat
canonical
fedoraproject
netapp
CWE-862
7.8
7.8
2022-03-02
CVE-2021-3631
A flaw was found in libvirt while it generates SELinux MCS category pairs for VMs' dynamic labels.
local
high complexity
redhat
netapp
6.3
6.3
2022-03-02
CVE-2021-3667
An improper locking issue was found in the virStoragePoolLookupByTargetPath API of libvirt.
network
low complexity
redhat
netapp
6.5
6.5
2022-03-02
CVE-2021-3772
A flaw was found in the Linux SCTP stack.
network
high complexity
linux
redhat
debian
oracle
netapp
6.5
6.5
2022-02-26
CVE-2022-23308
Use After Free vulnerability in multiple products
valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.
network
low complexity
xmlsoft
fedoraproject
debian
apple
netapp
oracle
CWE-416
7.5
7.5
2022-02-26
CVE-2020-36516
Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
An issue was discovered in the Linux kernel through 5.16.11.
network
high complexity
linux
netapp
CWE-327
5.9
5.9
2022-02-24
CVE-2022-21824
Due to the formatting logic of the "console.table()" function it was not safe to allow user controlled input to be passed to the "properties" parameter while simultaneously passing a plain object with at least one property as the first parameter, which could be "__proto__".
network
low complexity
nodejs
oracle
debian
netapp
8.2
8.2
2022-02-24
CVE-2022-24407
SQL Injection vulnerability in multiple products
In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement.
network
low complexity
cyrusimap
debian
fedoraproject
netapp
oracle
CWE-89
8.8
8.8
2022-02-24
CVE-2022-25636
Improper Privilege Management vulnerability in multiple products
net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write.
local
low complexity
linux
debian
netapp
oracle
CWE-269
7.8
7.8
«
Previous
1
2
...
38
39
40
(current)
41
42
...
181
182
»
Next