CVE-2016-1563: Netapp Clustered Data Ontap

Medium severity, CVSS 6.8. EPSS: 0.6% chance of exploitation in the next 30 days.

NetApp Clustered Data ONTAP 8.3.1 does not properly verify X.509 certificates from TLS servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Affected products

  • Netapp Clustered Data Ontap: version 8.3.1 only

Published 2016-04-07. Last modified 2026-06-17.