CVE-2023-27311: Path Traversal
Published May 26, 2023
·Updated
NetApp Blue XP Connector versions prior to 3.9.25 expose information via a directory listing. A new Connector architecture resolves this issue - obtaining the fix requires redeploying a fresh Connector.
Affected Software
1 affected component
NetApp Blue XP Connector<3.9.25
Event History
May 26, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2023-27311.
2
What is the severity of CVE-2023-27311?
The severity of CVE-2023-27311 is medium with a CVSS score of 5.3.
3
What software versions are affected by CVE-2023-27311?
NetApp Blue XP Connector versions prior to 3.9.25 are affected by CVE-2023-27311.
4
How does CVE-2023-27311 expose information?
CVE-2023-27311 exposes information via a directory listing.
5
How can CVE-2023-27311 be fixed?
To fix CVE-2023-27311, redeploy a fresh Connector with the new architecture.