CVE-2018-5486: Netapp Oncommand Unified Manager
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
NetApp OnCommand Unified Manager for Linux versions 7.2 though 7.3 ship with the Java Debug Wire Protocol (JDWP) enabled which allows unauthorized local attackers to execute arbitrary code.
Affected products
- Netapp Oncommand Unified Manager: from 7.2, up to and including 7.3
Published 2018-04-25. Last modified 2026-06-17.