Back to Database
Status published
Medium
CVE-2023-27315
Information Disclosure Vulnerability in SnapGathers
Vulnerability Description
SnapGathers versions prior to 4.9 are susceptible to a vulnerability which could allow a local authenticated attacker to discover plaintext domain user credentials
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-27315
Credits & Attribution
No credits recorded in the NVD database.
More from NetApp
View All →CVE-2025-26517
CVE-2025-26517 Privilege Escalation Vulnerability in StorageGRID (formerly StorageGRID Webscale)
Medium
5.4
CVE-2025-26516
CVE-2025-26516 Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)
Medium
5.3
CVE-2025-26515
CVE-2025-26515 Server-Side Request Forgery Vulnerability in StorageGRID (formerly StorageGRID Webscale)
High
7.5
CVE-2025-26514
CVE-2025-26514 Reflected Cross-Site Scripting Vulnerability in StorageGRID (formerly StorageGRID Webscale)
Medium
6.4
CVE-2025-26513
The installer for SAN Host Utilities for Windows versions prior...
High
7
Affected Vendor
NetApp
View all reports →Affected Software
SnapGathers
Vulnerable Versions:
0
Timeline
Official Publish:
October 12th, 2023
Last Modified:
September 18th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N