CVE-2019-5503

Description

OnCommand Workflow Automation versions prior to 5.0 shipped without certain HTTP Security headers configured which could allow an attacker to obtain sensitive information via unspecified vectors.

Risk Information

Base Score
5.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.502

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2018-11212,CVE-2019-2422,CVE-2019-2426,CVE-2019-5503 are affected in Netapp Oncommand Workflow Automation 5.0Windows
Multiple Vulnerabilities are affected in Netapp Oncommand Workflow Automation 5.0Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234