CVE-2023-27313: Privilege Escalation Vulnerability in SnapCenter
Published Oct 12, 2023
·Updated
SnapCenter versions 3.x and 4.x prior to 4.9 are susceptible to a vulnerability which may allow an authenticated unprivileged user to gain access as an admin user.
Affected Software
1 affected component
NetApp Snapcenter>=3.0<4.9
Event History
Oct 12, 2023
CVE Published
via MITRE·06:22 PM
Data Sourced
via MITRE·06:22 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-27313.
2
What are the affected versions of SnapCenter?
SnapCenter versions 3.x and 4.x prior to 4.9 are affected.
3
What is the severity level of this vulnerability?
This vulnerability has a severity level of 8.3, which is considered high.
4
How can an authenticated unprivileged user exploit this vulnerability?
An authenticated unprivileged user can exploit this vulnerability to gain access as an admin user.
5
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following link: https://security.netapp.com/advisory/ntap-20230713-0002/