CVE-2020-8574: High severity netapp active iq unified manager vulnerability
Published Aug 3, 2020
·Updated
Active IQ Unified Manager for Linux versions prior to 9.6 ship with the Java Management Extension Remote Method Invocation (JMX RMI) service enabled allowing unauthorized code execution to local users.
Affected Software
1 affected component
NetApp Active Iq Unified Manager Linux<9.6
Event History
Aug 3, 2020
CVE Published
via MITRE·04:56 PM
Data Sourced
via MITRE·04:56 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-8574?
CVE-2020-8574 is considered a critical vulnerability due to its potential for unauthorized code execution.
2
How do I fix CVE-2020-8574?
To fix CVE-2020-8574, upgrade Active IQ Unified Manager to version 9.6 or later.
3
What systems are affected by CVE-2020-8574?
CVE-2020-8574 affects all versions of Active IQ Unified Manager for Linux prior to 9.6.
4
What is the impact of CVE-2020-8574 on system security?
The impact of CVE-2020-8574 allows local users to execute unauthorized code, posing a significant security risk.
5
Is CVE-2020-8574 remotely exploitable?
CVE-2020-8574 is not remotely exploitable, as it requires local access for code execution.