Vulnerability Description
Active IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to perform unauthorized AutoSupport operations.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netapp | Active Iq Onecollect | 2.7.3 |
Related Weaknesses (CWE)
References
- https://security.netapp.com/advisory/ntap-20260603-0002Vendor Advisory
FAQ
What is CVE-2026-22055?
CVE-2026-22055 is a vulnerability with a CVSS score of 8.8 (HIGH). Active IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to perform unauthorized AutoSupport operations.
How severe is CVE-2026-22055?
CVE-2026-22055 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-22055?
Check the references section above for vendor advisories and patch information. Affected products include: Netapp Active Iq Onecollect.