Aff A700s Firmware
Vendor:
First CVE: Jun 3, 2019 · Active for 7 years
18
Total CVEs
More Total CVEs than 94% of tracked products
4.5
Avg CVEs / Year
Higher CVE frequency than 88% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 51% of tracked products
5.6%
KEV Rate
Higher KEV Rate than 98% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Aff A700s Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 3, 2019
7 years ago
Most Recent CVE
Aug 18, 2022
1,440 days ago
CVE Severity & Scoring
Aff A700s Firmware18 CVEs
22%
67%
11%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local9 (50.0%)
Network9 (50.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (88.9%)
High2 (11.1%)
Unknown0 (0.0%)
User Interaction
None16 (88.9%)
Unknown0 (0.0%)
Required2 (11.1%)
Privileges Required
Low6 (33.3%)
High1 (5.6%)
None11 (61.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (18 CVEs).
18 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-13272HIGH In the Linux kernel before 5.1.17, ptrace_link in kernel/ptrace.c mishandles the recording of the credentials of a process that wants to create a ptrace relationship, which allows | Jul 17, 2019 | 7.8 | 93 | YES | YES |
CVE-2019-5497CRITICAL NetApp AFF A700s Baseboard Management Controller (BMC) firmware versions 1.22 and higher were shipped with a default account enabled that could allow unauthorized arbitrary command | Jul 1, 2019 | 9.8 | 32 | NO | NO |
CVE-2019-18805CRITICAL An issue was discovered in net/ipv4/sysctl_net_ipv4.c in the Linux kernel before 5.0.11. There is a net/ipv4/tcp_input.c signed integer overflow in tcp_ack_update_rtt() when usersp | Nov 7, 2019 | 9.8 | 31 | NO | NO |
CVE-2021-20322HIGH A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functionality was found to allow the ability to quickly scan open UDP | Feb 18, 2022 | 7.4 | 28 | NO | NO |
CVE-2019-14821HIGH An out-of-bounds access issue was found in the Linux kernel, all versions through 5.3, in the way Linux kernel's KVM hypervisor implements the Coalesced MMIO write operation. It op | Sep 19, 2019 | 8.8 | 28 | NO | NO |
CVE-2019-19816HIGH In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image and performing some operations can cause slab-out-of-bounds write access in __btrfs_map_block in fs/btrfs/volu | Dec 17, 2019 | 7.8 | 26 | NO | NO |
CVE-2019-15538HIGH An issue was discovered in xfs_setattr_nonsize in fs/xfs/xfs_iops.c in the Linux kernel through 5.2.9. XFS partially wedges when a chgrp fails on account of being out of disk quota | Aug 25, 2019 | 7.5 | 26 | NO | NO |
CVE-2019-12615HIGH An issue was discovered in get_vdev_port_node_info in arch/sparc/kernel/mdesc.c in the Linux kernel through 5.1.6. There is an unchecked kstrdup_const of node_info->vdev_port.name, | Jun 3, 2019 | 7.5 | 26 | NO | NO |
CVE-2021-33060HIGH Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege via local access. | Aug 18, 2022 | 7.8 | 25 | NO | NO |
CVE-2019-25045HIGH An issue was discovered in the Linux kernel before 5.0.19. The XFRM subsystem has a use-after-free, related to an xfrm_state_fini panic, aka CID-dbb2483b2a46. | Jun 7, 2021 | 7.8 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (18 CVEs).
CISA KEV
1 CVE
5.6% of CVEs· 98th percentile
Metasploit
1 CVE
5.6% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
5.6% of CVEs· 86th percentile
Social Chatter
Signals from CVEs in this product scope (18 CVEs).
Media Mentions
Signals from CVEs in this product scope (18 CVEs).
Top CNAs Publishing CVEs For Aff A700s Firmware
Top CWEs
Versions
No cataloged versions.