CVE-2019-17276: Netapp Oncommand System Manager
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
OnCommand System Manager versions 9.3 prior to 9.3P18 and 9.4 prior to 9.4P2 are susceptible to a cross site scripting vulnerability that could allow an authenticated attacker to inject arbitrary scripts into the SNMP Community Names label field.
Affected products
- Netapp Oncommand System Manager: version 9.3 only; version 9.4 only
Published 2020-03-24. Last modified 2026-06-17.