First published: Thu Sep 29 2022(Updated: )
SnapCenter versions prior to 4.7 shipped without Content Security Policy (CSP) implemented which could allow certain types of attacks that otherwise would be prevented.
Credit: security-alert@netapp.com
Affected Software | Affected Version | How to fix |
---|---|---|
Netapp Snapcenter | <4.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-38732.
The severity of CVE-2022-38732 is high (7.5).
The affected software for CVE-2022-38732 is Netapp Snapcenter versions prior to 4.7.
CVE-2022-38732 is a vulnerability in SnapCenter versions prior to 4.7 which shipped without Content Security Policy (CSP) implemented, allowing certain types of attacks that would otherwise be prevented.
You can find more information about CVE-2022-38732 at the following link: [Netapp Security Advisory](https://security.netapp.com/advisory/NTAP-20220926-0001/).