CVE-2021-26990: Critical severity cloud manager vulnerability
Published Mar 19, 2021
·Updated
Cloud Manager versions prior to 3.9.4 are susceptible to a vulnerability that could allow a remote attacker to overwrite arbitrary system files.
Affected Software
1 affected component
NetApp Cloud Manager<3.9.4
Remediation
Patch Available
Event History
Mar 19, 2021
CVE Published
via MITRE·06:42 PM
Data Sourced
via MITRE·06:42 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-26990?
CVE-2021-26990 is a vulnerability in Cloud Manager versions prior to 3.9.4 that could allow a remote attacker to overwrite arbitrary system files.
2
What is the severity of CVE-2021-26990?
CVE-2021-26990 has a severity rating of 9.1 (critical).
3
Which software versions are affected by CVE-2021-26990?
Cloud Manager versions prior to 3.9.4 are affected by CVE-2021-26990.
4
How can a remote attacker exploit this vulnerability?
A remote attacker can exploit CVE-2021-26990 to overwrite arbitrary system files.
5
Is there a fix for CVE-2021-26990?
Yes, updating Cloud Manager to version 3.9.4 or later will fix CVE-2021-26990.