CVE-2025-26512: Netapp Snapcenter
Critical severity, CVSS 9.9. EPSS: 0.7% chance of exploitation in the next 30 days.
SnapCenter versions prior to 6.0.1P1 and 6.1P1 are susceptible to a vulnerability which may allow an authenticated SnapCenter Server user to become an admin user on a remote system where a SnapCenter plug-in has been installed.
Affected products
- Netapp Snapcenter: before 6.0.1 (fixed in 6.0.1); version 6.0.1 only; version 6.1 only
Published 2025-03-24. Last modified 2026-06-17.