First published: Thu Oct 04 2018(Updated: )
NetApp E-Series SANtricity OS Controller Software 11.30 and later version 11.30.5 is susceptible to unauthenticated remote code execution.
Credit: security-alert@netapp.com
Affected Software | Affected Version | How to fix |
---|---|---|
NetApp E-Series SANtricity OS Controller | >=11.0<=11.40 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5492 has a critical severity rating due to its potential for unauthenticated remote code execution.
To remediate CVE-2018-5492, upgrade to NetApp E-Series SANtricity OS Controller version 11.30.5 or later.
CVE-2018-5492 affects NetApp E-Series SANtricity OS Controller versions from 11.0 to 11.30.4.
Yes, CVE-2018-5492 can be exploited without authentication, leading to remote code execution.
The vendor for the affected software in CVE-2018-5492 is NetApp.