CVE-2020-8588: Low severity ibm data ontap vulnerability
Published Feb 3, 2021
·Updated
Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15 are susceptible to a vulnerability which could allow unauthorized tenant users to discover the existence of data on other Storage Virtual Machines (SVMs).
Affected Software
19 affected components
NetApp Clustered Data ONTAP<9.3
NetApp Clustered Data ONTAP>=9.4<9.5
NetApp Clustered Data ONTAP=9.3
NetApp Clustered Data ONTAP=9.3-p1
NetApp Clustered Data ONTAP=9.3-p10
NetApp Clustered Data ONTAP=9.3-p2
NetApp Clustered Data ONTAP=9.3-p3
NetApp Clustered Data ONTAP=9.3-p4
NetApp Clustered Data ONTAP=9.3-p5
NetApp Clustered Data ONTAP=9.3-p6
NetApp Clustered Data ONTAP=9.3-p7
NetApp Clustered Data ONTAP=9.3-p8
NetApp Clustered Data ONTAP=9.3-p9
NetApp Clustered Data ONTAP=9.3-rc1
NetApp Clustered Data ONTAP=9.5
NetApp Clustered Data ONTAP=9.5-p1
NetApp Clustered Data ONTAP=9.5-p6
NetApp Clustered Data ONTAP=9.5-p8
NetApp Clustered Data ONTAP=9.5-p9
Event History
Feb 3, 2021
CVE Published
via MITRE·05:33 PM
Data Sourced
via MITRE·05:33 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-8588?
CVE-2020-8588 has a high severity rating as it may allow unauthorized access to sensitive data.
2
How do I fix CVE-2020-8588?
To fix CVE-2020-8588, upgrade to Clustered Data ONTAP version 9.3P20 or 9.5P15 or later.
3
Which versions of Clustered Data ONTAP are affected by CVE-2020-8588?
CVE-2020-8588 affects Clustered Data ONTAP versions prior to 9.3P20 and 9.5P15.
4
What type of vulnerability is CVE-2020-8588?
CVE-2020-8588 is a security vulnerability that allows unauthorized tenant users to discover data on other Storage Virtual Machines.
5
Who is affected by CVE-2020-8588?
Organizations using affected versions of NetApp Clustered Data ONTAP may be at risk from CVE-2020-8588.