CVE-2020-8584: Critical severity netapp solidfire & hci management node vulnerability
Published Jan 8, 2021
·Updated
Element OS versions prior to 1.8P1 and 12.2 are susceptible to a vulnerability that could allow an unauthenticated remote attacker to perform arbitrary code execution.
Affected Software
6 affected components
NetApp Hci Management Node
NetApp Solidfire
NetApp Hci Storage Node
NetApp Element Os<1.8
NetApp Element Os>=12.0<=12.2
NetApp Element Os=1.8
Event History
Jan 8, 2021
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-8584?
CVE-2020-8584 is a vulnerability in Element OS versions prior to 1.8P1 and 12.2 that could allow an unauthenticated remote attacker to perform arbitrary code execution.
2
Which software versions are affected by CVE-2020-8584?
Element OS versions prior to 1.8P1 and 12.2 are affected by CVE-2020-8584.
3
What is the severity of CVE-2020-8584?
CVE-2020-8584 has a severity rating of critical (9.8).
4
How can an attacker exploit CVE-2020-8584?
An unauthenticated remote attacker can exploit CVE-2020-8584 to perform arbitrary code execution.
5
Is there a fix available for CVE-2020-8584?
Yes, it is recommended to update Element OS to version 1.8P1 or 12.2 to fix CVE-2020-8584.