CVE-2018-5485: High severity NetApp OnCommand Unified Manager vulnerability
Published May 24, 2018
·Updated
NetApp OnCommand Unified Manager for Windows versions 7.2 through 7.3 are susceptible to a vulnerability which could lead to a privilege escalation attack.
Affected Software
4 affected components
NetApp OnCommand Unified Manager>=7.2<=7.3
Microsoft Windows
All of the following
NetApp OnCommand Unified Manager>=7.2<=7.3
Microsoft Windows
Event History
May 24, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Data Sourced
via NVD·02:29 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-5485?
CVE-2018-5485 has been classified as a medium severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2018-5485?
To fix CVE-2018-5485, upgrade to a version of NetApp OnCommand Unified Manager that is beyond 7.3.
3
What systems are impacted by CVE-2018-5485?
CVE-2018-5485 affects NetApp OnCommand Unified Manager for Windows versions 7.2 through 7.3.
4
Can CVE-2018-5485 be exploited remotely?
CVE-2018-5485 may require local access to exploit due to its nature as a privilege escalation vulnerability.
5
Are all versions of NetApp OnCommand Unified Manager affected by CVE-2018-5485?
No, only the versions 7.2 through 7.3 of NetApp OnCommand Unified Manager are impacted by CVE-2018-5485.