VYPR
Medium severity5.5NVD Advisory· Published Feb 8, 2021· Updated Jun 17, 2026

CVE-2020-8587

CVE-2020-8587

Description

OnCommand System Manager 9.x versions prior to 9.3P20 and 9.4 prior to 9.4P3 are susceptible to a vulnerability that could allow HTTP clients to cache sensitive responses making them accessible to an attacker who has access to the system where the client runs.

Affected products

5
  • cpe:2.3:a:netapp:oncommand_system_manager:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:netapp:oncommand_system_manager:*:*:*:*:*:*:*:*range: >=9.0,<9.3
    • cpe:2.3:a:netapp:oncommand_system_manager:9.3:-:*:*:*:*:*:*
    • cpe:2.3:a:netapp:oncommand_system_manager:9.4:-:*:*:*:*:*:*
    • (no CPE)range: <9.3P20, <9.4P3
  • NetApp/OnCommand System Managerdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.