CVE-2022-23241: High severity ibm data ontap vulnerability
Published Oct 19, 2022
·Updated
Clustered Data ONTAP versions 9.11.1 through 9.11.1P2 with SnapLock configured FlexGroups are susceptible to a vulnerability which could allow an authenticated remote attacker to arbitrarily modify or delete WORM data prior to the end of the retention period.
Affected Software
3 affected components
NetApp Clustered Data ONTAP=9.11.1
NetApp Clustered Data ONTAP=9.11.1-p2
NetApp Clustered Data ONTAP=9.11.1-rc1
Event History
Oct 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID is CVE-2022-23241.
2
What is the severity of CVE-2022-23241?
The severity of CVE-2022-23241 is high.
3
Which versions of Clustered Data ONTAP are affected by CVE-2022-23241?
Clustered Data ONTAP versions 9.11.1 through 9.11.1P2 are affected by CVE-2022-23241.
4
What is the impact of CVE-2022-23241?
CVE-2022-23241 allows an authenticated remote attacker to arbitrarily modify or delete WORM data prior to the end of the retention period.
5
How can I fix this vulnerability?
Apply the necessary patches or updates provided by NetApp to fix this vulnerability.