CVE-2021-26987
Description
Element Plug-in for vCenter Server incorporates SpringBoot Framework. SpringBoot Framework versions prior to 1.3.2 are susceptible to a vulnerability which when successfully exploited could lead to Remote Code Execution. All versions of Element Plug-in for vCenter Server, Management Services versions prior to 2.17.56 and Management Node versions through 12.2 contain vulnerable versions of SpringBoot Framework.
CWE
- (none)
Affected
- n/a / Element Plug-in for vCenter Server — v=All versions [affected]
- n/a / Management Services for Element Software and NetApp HCI — v=versions prior to 2.17.56 [affected]
- n/a / NetApp SolidFire & HCI Management Node — v=versions through 12.2 [affected]
CVSS
- (none)
References
- https://security.netapp.com/advisory/ntap-20210315-0001/ x_refsource_CONFIRM
Source
cvelistV5-main/cves/2021/26xxx/CVE-2021-26987.json