CVE-2021-27002: High severity cloud manager vulnerability
Published Oct 11, 2021
·Updated
NetApp Cloud Manager versions prior to 3.9.10 are susceptible to a vulnerability which could allow a remote unauthenticated attacker to retrieve sensitive data via the web proxy.
Affected Software
1 affected component
NetApp Cloud Manager<3.9.10
Remediation
Patch Available
Event History
Oct 11, 2021
CVE Published
via MITRE·04:37 PM
Data Sourced
via MITRE·04:37 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-27002?
CVE-2021-27002 is a vulnerability in NetApp Cloud Manager versions prior to 3.9.10 that could allow a remote unauthenticated attacker to retrieve sensitive data via the web proxy.
2
What is the severity of CVE-2021-27002?
CVE-2021-27002 has a severity rating of 7.5 (high).
3
How can the CVE-2021-27002 vulnerability be exploited?
The CVE-2021-27002 vulnerability can be exploited by a remote unauthenticated attacker who can retrieve sensitive data via the web proxy.
4
Which version of NetApp Cloud Manager is affected by CVE-2021-27002?
NetApp Cloud Manager versions prior to 3.9.10 are affected by CVE-2021-27002.
5
How can I fix CVE-2021-27002?
To fix CVE-2021-27002, it is recommended to upgrade NetApp Cloud Manager to version 3.9.10 or above.