VYPR

Oncommand Unified Manager Core Package

Sign in to watch

by NetApp

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-7439Hig0.497.50.00May 26, 2017NetApp OnCommand Unified Manager Core Package 5.x before 5.2.2P1 might allow remote attackers to obtain sensitive information via vectors involving error messages.
CVE-2017-7236Hig0.497.50.00May 26, 2017SQL injection vulnerability in NetApp OnCommand Unified Manager Core Package 5.x before 5.2.2P1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
CVE-2017-15906Med0.355.30.03Oct 26, 2017The process_open function in sftp-server.c in OpenSSH before 7.6 does not properly prevent write operations in readonly mode, which allows attackers to create zero-length files.