CVE-2016-5045: Infoleak
Published Jul 3, 2017
·Updated
NetApp OnCommand System Manager before 9.0 allows remote attackers to obtain sensitive credentials via vectors related to cluster peering setup.
Affected Software
3 affected components
NetApp OnCommand System Manager=8.3
NetApp OnCommand System Manager=8.3.1
NetApp OnCommand System Manager=8.3.2
Event History
Jul 3, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5045?
CVE-2016-5045 has a medium severity rating due to its potential for exposing sensitive credentials.
2
How do I fix CVE-2016-5045?
To fix CVE-2016-5045, upgrade to NetApp OnCommand System Manager version 9.0 or later.
3
What versions are affected by CVE-2016-5045?
CVE-2016-5045 affects NetApp OnCommand System Manager versions 8.3, 8.3.1, and 8.3.2.
4
Can CVE-2016-5045 be exploited remotely?
Yes, CVE-2016-5045 can be exploited remotely by attackers during cluster peering setup.
5
What type of sensitive information is at risk with CVE-2016-5045?
CVE-2016-5045 risks exposing sensitive credentials such as usernames and passwords.