Active IQ Unified Manager for VMware vSphere, Linux, and Microsoft Windows versions prior to 9.10P1 are susceptible to a vulnerability which could allow an attacker to discover cluster, node and Active IQ Unified Manager specific information via AutoSupport telemetry data that is sent even when AutoSupport has been disabled.
References
Link | Resource |
---|---|
https://security.netapp.com/advisory/ntap-20220324-0001/ | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-08-25 11:15
Updated : 2022-08-29 11:16
NVD link : CVE-2022-23235
Mitre link : CVE-2022-23235
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
netapp
- active_iq_unified_manager