CVE-2024-21989: Privilege Escalation Vulnerability in ONTAP Select Deploy administration utility
ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x are susceptible to a vulnerability which when successfully exploited could allow a read-only user to escalate their privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-21989?
CVE-2024-21989 has a high severity rating due to its potential to allow privilege escalation for read-only users.
How do I fix CVE-2024-21989?
To fix CVE-2024-21989, it is recommended to upgrade to a version of ONTAP Select Deploy that is not affected, specifically any version beyond 9.14.1.
Which versions of ONTAP Select Deploy are affected by CVE-2024-21989?
CVE-2024-21989 affects ONTAP Select Deploy versions 9.12.1.x, 9.13.1.x, and 9.14.1.x.
What impact does CVE-2024-21989 have on ONTAP Select Deploy users?
The impact of CVE-2024-21989 allows unauthorized escalation of privileges for users who only have read-only access.
Is there a workaround for CVE-2024-21989?
There are no known workarounds for CVE-2024-21989, so upgrading to a secure version is essential.