CERT-FR warns of remote code execution flaw in NetApp products

France’s CERT-FR has issued an advisory on a security flaw in NetApp products that can allow remote attackers to execute arbitrary code. The vulnerability, identified as CVE‑2023‑22102, affects multiple NetApp management tools, including Active IQ Unified Manager for Microsoft Windows versions earlier than 9.16P2D23 and 9.18D11 or 9.18P1, Active IQ Unified Manager for VMware vSphere with similar version thresholds, and OnCommand Insight before version 7.3.15. NetApp’s own security bulletin (NTAP‑20231027‑0007) released on 27 May 2026 details the issue. CERT-FR recommends applying patches supplied by NetApp, which can be obtained from the vendor’s security advisory linked in the notice. The advisory was published on 28 May 2026.

Summary of content from

source

Made by AI. If you spot anything of concern write us at contact@cybach.com. We’ll promptly correct irregularities.


Posted