CVE-2021-27006: Medium severity netapp storagegrid webscale vulnerability
Published Dec 23, 2021
·Updated
StorageGRID (formerly StorageGRID Webscale) versions 11.5 prior to 11.5.0.5 are susceptible to a vulnerability which may allow an administrative user to escalate their privileges and modify settings in SANtricity System Manager.
Affected Software
1 affected component
NetApp Storagegrid>=11.5.0<11.5.0.5
Event History
Dec 23, 2021
CVE Published
via MITRE·07:48 PM
Data Sourced
via MITRE·07:48 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-27006.
2
What is the severity of CVE-2021-27006?
The severity of CVE-2021-27006 is medium with a CVSS score of 4.4.
3
Which versions of StorageGRID are affected by CVE-2021-27006?
StorageGRID versions 11.5 prior to 11.5.0.5 are affected by CVE-2021-27006.
4
What is the impact of CVE-2021-27006?
CVE-2021-27006 may allow an administrative user to escalate their privileges and modify settings in SANtricity System Manager.
5
How do I fix CVE-2021-27006?
To fix CVE-2021-27006, update your StorageGRID installation to version 11.5.0.5 or higher.