CVE-2024-21982

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 12, 2024
Updated: Jan 18, 2024

Summary

CVE-2024-21982 is a newly identified vulnerability that affects ONTAP versions 9.4 and later. This issue permits unprivileged attackers to gain access to sensitive information when an administrative user runs the object-store profiler command. Successful exploitation of this vulnerability could result in the disclosure of confidential data, posing a significant security risk. It is recommended that affected organizations apply the applicable patches as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • NetApp Clustered Data ONTAP

Affected Vendors

  • NetApp