Skip to main content

Vendor/product archive

netapp / snap_creator_framework CVEs

Beta · best-effort

37 CVEs tagged to netapp / snap_creator_framework10 Critical, 10 High, 16 Medium, 1 Low, 0 Unrated.

CVE-2021-22096

Published Oct 28, 2021

In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older unsupported versions, it is possible for a user to provide malicious input to cause the insertion of additio…

CVSS 4.3 · Medium

CVE-2021-28169

Published Jun 9, 2021

For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doubly encoded path to access protected resources within the WE…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2021-23926

Published Jan 14, 2021

The XML parsers used by XMLBeans up to version 2.6.0 did not set the properties needed to protect the user from malicious XML input. Vulnerabilities include possibilities for XML…

CVSS 9.1 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2016-5710

Published Feb 11, 2020

NetApp Snap Creator Framework before 4.3P1 allows remote authenticated users to conduct clickjacking attacks via unspecified vectors.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 37 CVEsPage 1 of 2