First published: Tue Aug 29 2017(Updated: )
NetApp StorageGRID Webscale 10.2.x before 10.2.2.3, 10.3.x before 10.3.0.4, and 10.4.x before 10.4.0.2 allow remote authenticated users to delete arbitrary objects via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetApp StorageGrid | =10.2 | |
NetApp StorageGrid | =10.2.1 | |
NetApp StorageGrid | =10.2.2 | |
NetApp StorageGrid | =10.2.2.2 | |
NetApp StorageGrid | =10.3.0 | |
NetApp StorageGrid | =10.3.0.3 | |
NetApp StorageGrid | =10.4.0 | |
NetApp StorageGrid | =10.4.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-12422 has been rated as a high severity vulnerability due to its potential impact on data availability.
To fix CVE-2017-12422, upgrade to NetApp StorageGRID Webscale version 10.2.2.3, 10.3.0.4, or 10.4.0.2 or later.
CVE-2017-12422 affects users of NetApp StorageGRID Webscale versions prior to 10.2.2.3, 10.3.0.4, and 10.4.0.2.
CVE-2017-12422 permits remote authenticated users to delete arbitrary objects, posing a risk of unauthorized data loss.
CVE-2017-12422 was disclosed on August 25, 2017.