Vulnerability Description
All StorageGRID Webscale versions are susceptible to a vulnerability which could permit an unauthenticated attacker to communicate with systems on the same network as the StorageGRID Webscale Admin Node via HTTP or to take over services on the Admin Node.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netapp | Storagegrid Webscale | - |
References
- https://security.netapp.com/advisory/ntap-20181114-0001/Vendor Advisory
- https://security.netapp.com/advisory/ntap-20181114-0001/Vendor Advisory
FAQ
What is CVE-2018-5495?
CVE-2018-5495 is a vulnerability with a CVSS score of 9.8 (CRITICAL). All StorageGRID Webscale versions are susceptible to a vulnerability which could permit an unauthenticated attacker to communicate with systems on the same network as the StorageGRID Webscale Admin No...
How severe is CVE-2018-5495?
CVE-2018-5495 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-5495?
Check the references section above for vendor advisories and patch information. Affected products include: Netapp Storagegrid Webscale.