Medium severity5.5NVD Advisory· Published Nov 1, 2021· Updated Jun 17, 2026
CVE-2021-27004
CVE-2021-27004
Description
System Manager 9.x versions 9.7 and higher prior to 9.7P16, 9.8P7 and 9.9.1P2 are susceptible to a vulnerability which could allow a local attacker to discover plaintext iSCSI CHAP credentials.
Affected products
5cpe:2.3:a:netapp:ontap_system_manager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:netapp:ontap_system_manager:*:*:*:*:*:*:*:*range: >=9.0,<9.7
- cpe:2.3:a:netapp:ontap_system_manager:9.7:-:*:*:*:*:*:*
- cpe:2.3:a:netapp:ontap_system_manager:9.8:-:*:*:*:*:*:*
- cpe:2.3:a:netapp:ontap_system_manager:9.9.12:-:*:*:*:*:*:*
- Range: 9.7 and higher prior to 9.7P16, 9.8P7 and 9.9.1P2
Patches
Vulnerability mechanics
References
1- security.netapp.com/advisory/NTAP-20211029-0001/nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.