NetApp OnCommand Unified Manager for Linux versions 7.2 though 7.3 ship with the Java Debug Wire Protocol (JDWP) enabled which allows unauthorized local attackers to execute arbitrary code.
References
Link Resource
https://security.netapp.com/advisory/ntap-20180425-0001/ Mitigation Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: netapp

Published: 2018-04-25T00:00:00

Updated: 2018-04-25T20:57:01

Reserved: 2018-01-12T00:00:00


Link: CVE-2018-5486

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-04-25T21:29:00.517

Modified: 2019-10-03T00:03:26.223


Link: CVE-2018-5486

JSON object: View

cve-icon Redhat Information

No data.

CWE