NetApp / Oncommand Performance Manager
73 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-7525 | jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper | CRITICAL | 9.8 | Feb 6, 2018 |
| CVE-2017-15095 | jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525) | CRITICAL | 9.8 | Feb 6, 2018 |
| CVE-2017-10388 | OpenJDK: use of unprotected sname in Kerberos client (Libraries, 8178794) | HIGH | 7.5 | Oct 19, 2017 |
| CVE-2017-10384 | mysql: Server: DDL unspecified vulnerability (CPU Oct 2017) | MEDIUM | 6.5 | Oct 19, 2017 |
| CVE-2017-10379 | mysql: Client programs unspecified vulnerability (CPU Oct 2017) | MEDIUM | 6.5 | Oct 19, 2017 |
| CVE-2017-10378 | mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2017) | MEDIUM | 6.5 | Oct 19, 2017 |
| CVE-2017-10365 | mysql: Server: InnoDB unspecified vulnerability (CPU Oct 2017) | LOW | 3.8 | Oct 19, 2017 |
| CVE-2017-10357 | OpenJDK: unbounded memory allocation in ObjectInputStream deserialization (Serialization, 8181597) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10356 | OpenJDK: weak protection of key stores against brute forcing (Security, 8181692) | MEDIUM | 6.2 | Oct 19, 2017 |
| CVE-2017-10355 | OpenJDK: no default network operations timeouts in FtpClient (Networking, 8181612) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10350 | OpenJDK: unbounded memory allocation in JAXWSExceptionBase deserialization (JAX-WS, 8181100) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10349 | OpenJDK: unbounded memory allocation in PredicatedNodeTest deserialization (JAXP, 8181327) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10348 | OpenJDK: multiple unbounded memory allocations in deserialization (Libraries, 8181432) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10347 | OpenJDK: unbounded memory allocation in SimpleTimeZone deserialization (Serialization, 8181323) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10346 | OpenJDK: insufficient loader constraints checks for invokespecial (Hotspot, 8180711) | CRITICAL | 9.6 | Oct 19, 2017 |
| CVE-2017-10345 | OpenJDK: unbounded resource use in JceKeyStore deserialization (Serialization, 8181370) | LOW | 3.1 | Oct 19, 2017 |
| CVE-2017-10320 | mysql: Server: InnoDB unspecified vulnerability (CPU Oct 2017) | MEDIUM | 4.9 | Oct 19, 2017 |
| CVE-2017-10309 | JDK: unspecified vulnerability fixed in 8u151 and 9.0.1 (Deployment) | HIGH | 7.1 | Oct 19, 2017 |
| CVE-2017-10295 | OpenJDK: HTTP client insufficient check for newline in URLs (Networking, 8176751) | MEDIUM | 4.0 | Oct 19, 2017 |
| CVE-2017-10293 | JDK: unspecified vulnerability fixed in 6u171, 7u161, 8u151, and 9.0.1 (Javadoc) | MEDIUM | 6.1 | Oct 19, 2017 |
| CVE-2017-10286 | mysql: Server: InnoDB unspecified vulnerability (CPU Oct 2017) | MEDIUM | 4.4 | Oct 19, 2017 |
| CVE-2017-10285 | OpenJDK: incorrect privilege use when handling unreferenced objects (RMI, 8174966) | CRITICAL | 9.6 | Oct 19, 2017 |
| CVE-2017-10281 | OpenJDK: multiple unbounded memory allocations in deserialization (Serialization, 8174109) | MEDIUM | 5.3 | Oct 19, 2017 |
| CVE-2017-10274 | OpenJDK: CardImpl incorrect state handling (Smart Card IO, 8169026) | MEDIUM | 6.8 | Oct 19, 2017 |
| CVE-2017-10268 | mysql: Server: Replication unspecified vulnerability (CPU Oct 2017) | MEDIUM | 4.1 | Oct 19, 2017 |
Showing 1 to 25 of 73 CVEs