Home / Security / Advisories / NTAP-20170228-0002

NTAP-20170228-0002 — CVE-2016-5374 Missing SMB Authorization Check Vulnerability in ONTAP 9

Published 2017-02-28 · Updated 2017-02-28 · Status: Final · Exploitation: Not public

Official advisory: NTAP-20170228-0002 on security.netapp.com ↗. Affected versions, fixed releases, and workarounds live there — this page is a summary.

CVEs in this advisory

Affected products

What to do

  1. Check your ONTAP versions against the official advisory's affected-versions table.
  2. If affected and a fixed release exists, plan the upgrade — see the ONTAP upgrade runbook.
  3. If exploitation is listed as "active", treat remediation as urgent and review exposure (management LIFs, ONTAP S3, SnapMirror endpoints).

Related reading

Browse all ONTAP CVEs → · Security hub