NetApp Plug-in for Symantec NetBackup prior to version 2.0.1 makes use of a non-unique server certificate, making it vulnerable to impersonation.
The product does not validate, or incorrectly validates, a certificate.
Link | Tags |
---|---|
https://kb.netapp.com/support/s/article/NTAP-20161129-0001 | patch vendor advisory |
http://www.securitytracker.com/id/1037391 | vdb entry third party advisory |
http://www.securityfocus.com/bid/94659 | vdb entry third party advisory |