CVE-2016-1894: High severity NetApp OnCommand Workflow Automation vulnerability
Published Feb 7, 2017
·Updated
NetApp OnCommand Workflow Automation before 3.1P2 allows remote attackers to bypass authentication via unspecified vectors.
Affected Software
1 affected component
NetApp OnCommand Workflow Automation<=3.1
Remediation
Event History
Feb 7, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
via NVD·05:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 14, 58332
Event
02:09 PM
Frequently Asked Questions
1
What is the severity of CVE-2016-1894?
CVE-2016-1894 is classified as a critical vulnerability, allowing remote attackers to bypass authentication.
2
How do I fix CVE-2016-1894?
To remediate CVE-2016-1894, upgrade to NetApp OnCommand Workflow Automation version 3.1P2 or later.
3
What software is affected by CVE-2016-1894?
CVE-2016-1894 affects NetApp OnCommand Workflow Automation versions prior to 3.1P2.
4
Can CVE-2016-1894 be exploited remotely?
Yes, CVE-2016-1894 can be exploited remotely, allowing attackers unauthorized access.
5
Are there any workarounds for CVE-2016-1894?
There are no known workarounds for CVE-2016-1894; the only solution is to apply the software update.