Description
NetApp Cloud Manager versions prior to 3.9.9 log sensitive information when an Active Directory connection fails. The logged information is available only to authenticated users. Customers with auto-upgrade enabled should already be on a fixed version while customers using on-prem connectors with auto-upgrade disabled are advised to upgrade to a fixed version.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-13772 | NetApp Cloud Manager versions prior to 3.9.9 log sensitive information when an Active Directory connection fails. The logged information is available only to authenticated users. Customers with auto-upgrade enabled should already be on a fixed version while customers using on-prem connectors with auto-upgrade disabled are advised to upgrade to a fixed version. |
References
| Link | Providers |
|---|---|
| https://security.netapp.com/advisory/NTAP-20210805-0012 |
|
History
No history.
Status: PUBLISHED
Assigner: netapp
Published:
Updated: 2024-08-03T20:40:47.074Z
Reserved: 2021-02-09T00:00:00.000Z
Link: CVE-2021-26999
No data.
Status : Modified
Published: 2021-08-06T15:15:08.743
Modified: 2024-11-21T05:57:10.210
Link: CVE-2021-26999
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD