CVE-2020-8574
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/08/2020
Last modified:
12/08/2020
Description
Active IQ Unified Manager for Linux versions prior to 9.6 ship with the Java Management Extension Remote Method Invocation (JMX RMI) service enabled allowing unauthorized code execution to local users.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:netapp:active_iq_unified_manager:*:*:*:*:*:linux:*:* | 9.6 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



