Lucene search

K
cvelistNetappCVELIST:CVE-2016-6904
HistoryDec 11, 2017 - 3:00 p.m.

CVE-2016-6904

2017-12-1115:00:00
netapp
www.cve.org
2

AI Score

8.2

Confidence

High

EPSS

0.002

Percentile

58.9%

Versions of VASA Provider for Clustered Data ONTAP prior to 7.0P1 contain a web server that accepts plain text authentication. This could allow an unauthenticated attacker to obtain authentication credentials.

CNA Affected

[
  {
    "product": "VASA Provider for Clustered Data ONTAP",
    "vendor": "NetApp",
    "versions": [
      {
        "status": "affected",
        "version": "Versions prior to 7.0P1"
      }
    ]
  }
]

AI Score

8.2

Confidence

High

EPSS

0.002

Percentile

58.9%

Related for CVELIST:CVE-2016-6904