First published: Thu Nov 16 2017(Updated: )
NetApp SnapCenter Server versions 1.1 through 2.x are susceptible to a Cross-Site Request Forgery (CSRF) vulnerability which could be used to cause an unintended authenticated action in the user interface.
Credit: security-alert@netapp.com
Affected Software | Affected Version | How to fix |
---|---|---|
NetApp SnapCenter Server | =1.1 | |
NetApp SnapCenter Server | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15516 is a Cross-Site Request Forgery (CSRF) vulnerability in NetApp SnapCenter Server versions 1.1 through 2.x.
CVE-2017-15516 has a severity rating of 8.8 (high).
NetApp SnapCenter Server versions 1.1 through 2.x are affected by CVE-2017-15516.
CVE-2017-15516 can be exploited by utilizing a Cross-Site Request Forgery (CSRF) attack to perform unintended actions in the SnapCenter Server user interface.
To fix CVE-2017-15516, update NetApp SnapCenter Server to a version that is not affected by the vulnerability.