Vulnerability Description
NetApp StorageGRID Webscale 10.2.x before 10.2.2.3, 10.3.x before 10.3.0.4, and 10.4.x before 10.4.0.2 allow remote authenticated users to delete arbitrary objects via unspecified vectors.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netapp | Storagegrid Webscale | 10.2 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/100535Third Party AdvisoryVDB Entry
- https://kb.netapp.com/support/s/article/NTAP-20170825-0001Vendor Advisory
- http://www.securityfocus.com/bid/100535Third Party AdvisoryVDB Entry
- https://kb.netapp.com/support/s/article/NTAP-20170825-0001Vendor Advisory
FAQ
What is CVE-2017-12422?
CVE-2017-12422 is a vulnerability with a CVSS score of 6.5 (MEDIUM). NetApp StorageGRID Webscale 10.2.x before 10.2.2.3, 10.3.x before 10.3.0.4, and 10.4.x before 10.4.0.2 allow remote authenticated users to delete arbitrary objects via unspecified vectors.
How severe is CVE-2017-12422?
CVE-2017-12422 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-12422?
Check the references section above for vendor advisories and patch information. Affected products include: Netapp Storagegrid Webscale.