CVE-2019-5497: Netapp Aff a700s Firmware

Critical severity, CVSS 9.8. EPSS: 2.9% chance of exploitation in the next 30 days.

NetApp AFF A700s Baseboard Management Controller (BMC) firmware versions 1.22 and higher were shipped with a default account enabled that could allow unauthorized arbitrary command execution.

Affected products

  • Netapp Aff a700s Firmware: from 1.22
  • Netapp Clustered Data Ontap: affected versions not specified

Published 2019-07-01. Last modified 2026-06-17.