First published: Fri Jun 11 2021(Updated: )
E-Series SANtricity OS Controller Software 11.x versions prior to 11.70.1 are susceptible to a vulnerability which when successfully exploited could allow privileged attackers to execute arbitrary code.
Credit: security-alert@netapp.com
Affected Software | Affected Version | How to fix |
---|---|---|
NetApp E-Series SANtricity OS Controller | >=11.0.0<11.70.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-26995 is classified as a critical vulnerability due to its potential for arbitrary code execution by privileged attackers.
To mitigate CVE-2021-26995, upgrade the E-Series SANtricity OS Controller software to version 11.70.1 or later.
CVE-2021-26995 affects E-Series SANtricity OS Controller versions 11.0.0 to 11.70.0.
CVE-2021-26995 can be exploited by privileged attackers to execute arbitrary code on the affected systems.
There are no known workarounds for CVE-2021-26995; the only solution is to upgrade to the patched version.