NetApp published this final advisory covering CVE-2016-7172; the API labels exploitation information as **Not public**. The API currently lists affected products as: Snap Creator Framework.
NetApp published this final advisory covering CVE-2016-2123, CVE-2016-2125, CVE-2016-2126; the API labels exploitation information as **Public**. The API currently lists affected products as: StorageGRID (formerly StorageGRID Webscale); StorageGRID Webscale NAS Bridge; StorageGRID9 (9.x and prior).
NetApp published this final advisory covering CVE-2016-7171; the API labels exploitation information as **Not public**. The API currently lists affected products as: NetApp Plug-in for Symantec NetBackup.
NetApp published this final advisory covering CVE-2016-5711; the API labels exploitation information as **Not public**. The API currently lists affected products as: Virtual Storage Console for VMware vSphere 7.2 and above.
NetApp published this final advisory covering CVE-2016-4341; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-5195; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Cloud Backup (formerly AltaVault); NetApp SolidFire & HCI Storage Node (Element Software); ONTAP Select Deploy administration utility; OnCommand Balance; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Unified Manager for Clustered Data ONTAP; SnapProtect.
NetApp published this final advisory covering CVE-2016-5556, CVE-2016-5568, CVE-2016-5582, CVE-2016-5573, CVE-2016-5597, CVE-2016-5554, CVE-2016-5542; the API labels exploitation information as **Public**. The API currently lists affected products as: 7-Mode Transition Tool; NetApp SolidFire & HCI Storage Node (Element Software); NetApp VASA Provider for Clustered Data ONTAP 7.2 and above; OnCommand Cloud Manager; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Unified Manager for 7-Mode (core package); OnCommand Unified Manager for Clustered Data ONTAP; SnapManager for Oracle; SnapManager for SAP; StorageGRID (formerly StorageGRID Webscale); StorageGRID9 (9.x and prior).
NetApp published this final advisory covering CVE-2016-6667; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2010-1871; the API labels exploitation information as **Public**. The API currently lists affected products as: OnCommand Balance; OnCommand Insight; OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-2776; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; NetApp SolidFire & HCI Storage Node (Element Software); NetApp VASA Provider for Clustered Data ONTAP 7.2 and above.
NetApp published this final advisory covering No CVE listed; the API labels exploitation information as **Public**. The API currently lists affected products as: Data ONTAP operating in 7-Mode.
NetApp published this final advisory covering CVE-2016-5047; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand System Manager 9.x.
NetApp published this final advisory covering CVE-2016-3064; the API labels exploitation information as **Not public**. The API currently lists affected products as: Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-6820; the API labels exploitation information as **Not public**. The API currently lists affected products as: MetroCluster Tiebreaker for clustered Data ONTAP.
NetApp published this final advisory covering CVE-2015-8020; the API labels exploitation information as **Not public**. The API currently lists affected products as: Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-4953, CVE-2016-4954, CVE-2016-4955, CVE-2016-4956, CVE-2016-4957; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; Data ONTAP operating in 7-Mode; OnCommand Balance; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-2775; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.
NetApp published this final advisory covering CVE-2016-2119; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.
NetApp published this final advisory covering CVE-2016-4795, CVE-2016-5370, CVE-2016-5369; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand Insight.
NetApp published this final advisory covering CVE-2015-5531, CVE-2015-4165, CVE-2015-5377; the API labels exploitation information as **Public**. The API currently lists affected products as: OnCommand Insight.
NetApp published this final advisory covering CVE-2016-5373; the API labels exploitation information as **Not public**. The API currently lists affected products as: ATTO FibreBridge.
NetApp published this final advisory covering CVE-2015-3253; the API labels exploitation information as **Public**. The API currently lists affected products as: MetroCluster Plug-in for vSphere; OnCommand Insight; RapidData Migration Solution.
NetApp published this final advisory covering CVE-2016-5372; the API labels exploitation information as **Not public**. The API currently lists affected products as: Snap Creator Framework.
NetApp published this final advisory covering CVE-2016-5710; the API labels exploitation information as **Not public**. The API currently lists affected products as: Snap Creator Framework.
NetApp published this final advisory covering No CVE listed; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-3115, CVE-2016-1907, CVE-2016-1908; the API labels exploitation information as **Public**. The API currently lists affected products as: Cluster Network Switch (NetApp CN1610); Clustered Data ONTAP; Data ONTAP operating in 7-Mode; NetApp SteelStore Cloud Integrated Storage; NetApp VASA Provider for Clustered Data ONTAP 7.2 and above; OnCommand Balance; OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-3400, CVE-2016-3997, CVE-2016-3998, CVE-2016-2118; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; Data ONTAP operating in 7-Mode; NetApp Cloud Backup (formerly AltaVault); StorageGRID (formerly StorageGRID Webscale); StorageGRID9 (9.x and prior).
NetApp published this final advisory covering CVE-2015-6564, CVE-2015-6565; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; FlashRay; NetApp VTL; OnCommand Balance; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2016-0636; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp VASA Provider for Clustered Data ONTAP 7.2 and above; OnCommand Insight; OnCommand Report; OnCommand Unified Manager for 7-Mode (core package).
NetApp published this final advisory covering CVE-2015-3963; the API labels exploitation information as **Public**. The API currently lists affected products as: E-Series SANtricity OS Controller Software 8.x.
NetApp published this final advisory covering CVE-2016-1285, CVE-2016-1286, CVE-2016-2088; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; NetApp VASA Provider for Clustered Data ONTAP 7.2 and above.
NetApp published this final advisory covering CVE-2015-8704, CVE-2015-8705; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; NetApp VASA Provider for Clustered Data ONTAP 7.2 and above.
NetApp published this final advisory covering CVE-2016-2842; the API labels exploitation information as **Public**. The API currently lists affected products as: Cluster Network Switch (NetApp CN1610); Clustered Data ONTAP; Data ONTAP operating in 7-Mode; NetApp Cloud Backup (formerly AltaVault); NetApp Host Agent; NetApp SMI-S Provider; OnCommand Balance; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Report; OnCommand Unified Manager for 7-Mode (core package); OnCommand Unified Manager for Clustered Data ONTAP; OnCommand Workflow Automation; Open Systems SnapVault Agent; SnapCenter; SnapProtect; StorageGRID9 (9.x and prior).
NetApp published this final advisory covering CVE-2015-8000, CVE-2015-8461; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; FlashRay; OnCommand Balance.
NetApp published this final advisory covering CVE-2016-3063; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand System Manager 9.x.
NetApp published this final advisory covering CVE-2016-1894; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand Workflow Automation.
NetApp published this final advisory covering CVE-2016-1563; the API labels exploitation information as **Not public**. The API currently lists affected products as: Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2015-8322; the API labels exploitation information as **Not public**. The API currently lists affected products as: OnCommand System Manager 9.x.
NetApp published this final advisory covering CVE-2016-0703, CVE-2016-0704, CVE-2016-0797, CVE-2016-0798, CVE-2016-0799, CVE-2016-0702, CVE-2016-0705; the API labels exploitation information as **Public**. The API currently lists affected products as: Cluster Network Switch (NetApp CN1610); Clustered Data ONTAP; Clustered Data ONTAP Antivirus Connector; Data ONTAP operating in 7-Mode; NetApp Cloud Backup (formerly AltaVault); NetApp Host Agent; NetApp Manageability SDK; NetApp SMI-S Provider; NetApp Storage Encryption; OnCommand Balance; OnCommand Report; OnCommand Unified Manager for 7-Mode (core package); OnCommand Workflow Automation; Open Systems SnapVault Agent; Service Processor; SnapCenter; SnapDrive for Unix; SnapDrive for Windows; SnapProtect; StorageGRID9 (9.x and prior).
NetApp published this final advisory covering CVE-2016-0800; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP; Clustered Data ONTAP Antivirus Connector; Data ONTAP operating in 7-Mode; MetroCluster Tiebreaker for clustered Data ONTAP; NetApp Cloud Backup (formerly AltaVault); NetApp Host Agent; NetApp Manageability SDK; NetApp SMI-S Provider; NetApp VASA Provider for Clustered Data ONTAP 7.2 and above; OnCommand Report; OnCommand Shift; OnCommand Unified Manager for 7-Mode (core package); OnCommand Workflow Automation; Open Systems SnapVault Agent; Perfstat; RBAC User Creator for Data ONTAP; Snap Creator Framework; SnapDrive for Unix; SnapDrive for Windows; SnapProtect; Storage Replication Adapter for Clustered Data ONTAP for VMware vSphere 7.2 and above; Storage Replication Adapter for Data ONTAP operating in 7-Mode 2.1.
NetApp published this final advisory covering CVE-2015-7575; the API labels exploitation information as **Public**. The API currently lists affected products as: 7-Mode Transition Tool; Brocade Fabric Operating System Firmware; Clustered Data ONTAP Antivirus Connector; Config Advisor; Data ONTAP PowerShell Toolkit; E-Series SANtricity Management Plug-ins (VMware VASA (Windows)); E-Series SANtricity Management Plug-ins (VMware vCenter (Linux)); E-Series SANtricity Management Plug-ins (VMware vCenter); NetApp Host Agent; NetApp Manageability SDK; NetApp Plug-in for Symantec NetBackup; OnCommand API Services; OnCommand Cloud Manager; OnCommand Insight; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Plug-in for Microsoft; OnCommand Report; OnCommand Shift; OnCommand Unified Manager for Clustered Data ONTAP; OnCommand Workflow Automation; Open Systems SnapVault Agent; Perfstat; RBAC User Creator for Data ONTAP; Remote Support Diagnostics Tool; SnapCenter; SnapDrive for Windows; SnapProtect; Storage Services Connector; System Setup.
NetApp published this final advisory covering CVE-2016-0603; the API labels exploitation information as **Public**. The API currently lists affected products as: OnCommand Report; OnCommand Shift; OnCommand Unified Manager for 7-Mode (core package); OnCommand Unified Manager for Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2015-7547; the API labels exploitation information as **Public**. The API currently lists affected products as: E-Series SANtricity Storage Manager; NetApp Cloud Backup (formerly AltaVault); NetApp VASA Provider for Clustered Data ONTAP 7.2 and above; OnCommand Balance; OnCommand Performance Manager (Unified Manager Performance Pkg); OnCommand Unified Manager for Clustered Data ONTAP; SnapProtect; StorageGRID (formerly StorageGRID Webscale).
NetApp published this final advisory covering CVE-2016-0728; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp VASA Provider for Clustered Data ONTAP 7.2 and above.
NetApp published this final advisory covering CVE-2016-0701, CVE-2015-3197; the API labels exploitation information as **Public**. The API currently lists affected products as: Cluster Network Switch (NetApp CN1610); Clustered Data ONTAP; Clustered Data ONTAP Antivirus Connector; Data ONTAP Edge; Data ONTAP operating in 7-Mode; NetApp Cloud Backup (formerly AltaVault); NetApp Host Agent; NetApp Manageability SDK; NetApp SMI-S Provider; OnCommand Balance; OnCommand Report; OnCommand Unified Manager Core Package; OnCommand Workflow Automation; Open Systems SnapVault Agent; Service Processor; SnapDrive for Unix; SnapDrive for Windows; SnapProtect.
NetApp published this final advisory covering CVE-2016-0777, CVE-2016-0778; the API labels exploitation information as **Public**. The API currently lists affected products as: Cluster Network Switch (NetApp CN1610); Data ONTAP Edge; Data ONTAP operating in 7-Mode; ONTAP 9; OnCommand Balance; StorageGRID (formerly StorageGRID Webscale).
NetApp published this final advisory covering CVE-2015-7886; the API labels exploitation information as **Not public**. The API currently lists affected products as: Data ONTAP operating in 7-Mode.
NetApp published this final advisory covering CVE-2015-5477; the API labels exploitation information as **Public**. The API currently lists affected products as: Clustered Data ONTAP.
NetApp published this final advisory covering CVE-2015-8544; the API labels exploitation information as **Not public**. The API currently lists affected products as: SnapDrive for Windows.
NetApp published this final advisory covering CVE-2016-1502; the API labels exploitation information as **Not public**. The API currently lists affected products as: SnapCenter.