CVE-2023-27316: Privilege Escalation Vulnerability in SnapCenter
Published Oct 12, 2023
·Updated
SnapCenter versions 4.8 through 4.9 are susceptible to a vulnerability which may allow an authenticated SnapCenter Server user to become an admin user on a remote system where a SnapCenter plug-in has been installed.
Affected Software
1 affected component
NetApp Snapcenter>=4.8<=4.9
Event History
Oct 12, 2023
CVE Published
via MITRE·09:04 PM
Data Sourced
via MITRE·09:04 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for SnapCenter?
The vulnerability ID for SnapCenter is CVE-2023-27316.
2
What is the severity of CVE-2023-27316?
The severity of CVE-2023-27316 is high with a severity value of 7.8.
3
Which versions of SnapCenter are affected by CVE-2023-27316?
SnapCenter versions 4.8 through 4.9 are affected by CVE-2023-27316.
4
What is the impact of CVE-2023-27316?
CVE-2023-27316 may allow an authenticated SnapCenter Server user to become an admin user on a remote system where a SnapCenter plugin has been installed.
5
Where can I find more information about CVE-2023-27316?
You can find more information about CVE-2023-27316 on the NetApp security advisory page: <https://security.netapp.com/advisory/NTAP-20231012-0001/>