Medium severity5.5NVD Advisory· Published Feb 8, 2021· Updated Jun 17, 2026
CVE-2020-8587
CVE-2020-8587
Description
OnCommand System Manager 9.x versions prior to 9.3P20 and 9.4 prior to 9.4P3 are susceptible to a vulnerability that could allow HTTP clients to cache sensitive responses making them accessible to an attacker who has access to the system where the client runs.
Affected products
5cpe:2.3:a:netapp:oncommand_system_manager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:netapp:oncommand_system_manager:*:*:*:*:*:*:*:*range: >=9.0,<9.3
- cpe:2.3:a:netapp:oncommand_system_manager:9.3:-:*:*:*:*:*:*
- cpe:2.3:a:netapp:oncommand_system_manager:9.4:-:*:*:*:*:*:*
- (no CPE)range: <9.3P20, <9.4P3
- NetApp/OnCommand System Managerdescription
Patches
Vulnerability mechanics
References
1- security.netapp.com/advisory/NTAP-20210208-0001/nvdVendor Advisory
News mentions
0No linked articles in our index yet.