Описание
NetApp OnCommand Unified Manager for 7-mode (core package) versions prior to 5.2.1 are susceptible to a clickjacking or "UI redress attack" which could be used to cause a user to perform an unintended action in the user interface.
Ссылки
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.2.1 (исключая)
cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 48%
0.00245
Низкий
4.3 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-20
Связанные уязвимости
CVSS3: 4.3
github
больше 3 лет назад
NetApp OnCommand Unified Manager for 7-mode (core package) versions prior to 5.2.1 are susceptible to a clickjacking or "UI redress attack" which could be used to cause a user to perform an unintended action in the user interface.
EPSS
Процентиль: 48%
0.00245
Низкий
4.3 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-20