CVE Published: 11/12/2017 |
CVE Updated: 17/09/2024 |
CVE Year: 2016 Source: netapp |
Vendor: NetApp |
Product: VASA Provider for Clustered Data ONTAP Status : PUBLISHED
CVE-2016-6904 Description
Versions of VASA Provider for Clustered Data ONTAP prior to 7.0P1 contain a web server that accepts plain text authentication. This could allow an unauthenticated attacker to obtain authentication credentials.