VYPR
Medium severity5.5NVD Advisory· Published Nov 1, 2021· Updated Jun 17, 2026

CVE-2021-27004

CVE-2021-27004

Description

System Manager 9.x versions 9.7 and higher prior to 9.7P16, 9.8P7 and 9.9.1P2 are susceptible to a vulnerability which could allow a local attacker to discover plaintext iSCSI CHAP credentials.

Affected products

5
  • cpe:2.3:a:netapp:ontap_system_manager:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:netapp:ontap_system_manager:*:*:*:*:*:*:*:*range: >=9.0,<9.7
    • cpe:2.3:a:netapp:ontap_system_manager:9.7:-:*:*:*:*:*:*
    • cpe:2.3:a:netapp:ontap_system_manager:9.8:-:*:*:*:*:*:*
    • cpe:2.3:a:netapp:ontap_system_manager:9.9.12:-:*:*:*:*:*:*
  • Range: 9.7 and higher prior to 9.7P16, 9.8P7 and 9.9.1P2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.