VYPR

SnapCenter Server

by NetApp

CVEs (2)

  • CVE-2018-5482MedMar 4, 2019
    risk 0.35cvss 5.3epss 0.01

    NetApp SnapCenter Server prior to 4.1 does not set the secure flag for a sensitive cookie in an HTTPS session which can allow the transmission of the cookie in plain text over an unencrypted channel.

  • CVE-2017-15515MedMar 4, 2019
    risk 0.31cvss 4.8epss 0.01

    NetApp SnapCenter Server prior to 4.0 is susceptible to cross site scripting vulnerability that could allow a privileged user to inject arbitrary scripts into the custom secondary policy label field.