First published: Mon Jul 17 2017(Updated: )
NetApp Clustered Data ONTAP before 8.3.2P11, 9.0 before P4, and 9.1 before P5 allow attackers to obtain sensitive password information by leveraging logging of passwords entered non-interactively on the command line.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Data ONTAP | =8.3.2-p10 | |
IBM Data ONTAP | =9.0-p3 | |
IBM Data ONTAP | =9.1-p4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7947 is classified as a medium severity vulnerability.
To fix CVE-2017-7947, upgrade to versions 8.3.2P11 or higher, 9.0P4 or higher, or 9.1P5 or higher of NetApp Clustered Data ONTAP.
CVE-2017-7947 affects NetApp Clustered Data ONTAP versions 8.3.2 before P11, 9.0 before P4, and 9.1 before P5.
CVE-2017-7947 can expose sensitive password information that is logged non-interactively on the command line.
CVE-2017-7947 typically requires local access to the command line interface to exploit the vulnerability.