Skip to content
VulniPulse
Highest advisory severityMedium 1 vendor · 1 advisory

CVE-2023-21971

CVE-2023-21971: 1 tracked advisory record across NetApp. Compare vendor sources and published fix guidance.

Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.

Vendor advisory comparison

NetApp

1 advisory
  • Advisory severityMedium5.3

    Medium [CVE-2023-21971] MySQL Connector/J Vulnerability in NetApp Products

    NTAP-20230427-0010Source published Source updated

    Multiple NetApp products incorporate Oracle MySQL Connectors. Certain MySQL versions are susceptible to a vulnerability that could allow high privileged attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Connectors as well as unauthorized update, insert or delete access to some of MySQL Connectors accessible data and unauthorized read access to a subset of MySQL Connectors accessible data. Refer to “Oracle Critical Patch Update Advisory - April 2023” for specific version details. Affected products: Active IQ Unified Manager for…

    Affected products in this advisory
    • Active IQ Unified Manager for Linux
    • Active IQ Unified Manager for Microsoft Windows
    • Active IQ Unified Manager for VMware vSphere
    • OnCommand Insight
    Source-reported affected versions
    Affected-version details not available in this record.
    Source-reported fixed versions
    • Active IQ Unified Manager for Linux: 9.14
    • Active IQ Unified Manager for Microsoft Windows: 9.16P2
    • Active IQ Unified Manager for VMware vSphere: 9.14
    • OnCommand Insight: 7.3.15
    Mitigation guidance
    • Update affected NetApp products to a fixed release: Active IQ Unified Manager for Linux: 9.14, Active IQ Unified Manager for Microsoft Windows: 9.16P2, Active IQ Unified Manager for VMware vSphere: 9.14, OnCommand Insight: 7.3.15.

Android app · Google Play

Monitor future NetApp CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery