← Vulnerability feed

Vulnerability record · CVE-2020-8583 · published 13 November 2020

CVE-2020-8583: Netapp hci vulnerability

NNetapp · Hci

Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could allow an attacker to discover sensitive information by intercepting its transmission within an https session.

7.5 CVSS 3.1 High EPSS 1.1% · top 35.2%
7.5CVSS 3.1 base score, v2 5.0
1.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could allow an attacker to discover sensitive information by intercepting its transmission within an https session.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-8583 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2022-37434Zlib out-of-bounds write vulnerabilityzlib through 1.2.12 has a heap-based buffer over-read or buffer overflow in inflate in inflate.c via a large gzip header extra field. NOTE: only appl…EPSS 19%9.8CVE-2020-8584Netapp hci management node vulnerabilityElement OS versions prior to 1.8P1 and 12.2 are susceptible to a vulnerability that could allow an unauthenticated remote attacker to perform arbitra…EPSS 4.4%8.1CVE-2023-32250Linux kernel race condition vulnerabilityA flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION…EPSS 2.6%7.8CVE-2021-22118Vmware spring framework improper privilege management vulnerabilityIn Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation:…EPSS 0.40%7.8CVE-2019-14815Linux kernel heap-based buffer overflow vulnerabilityA vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver.EPSS 0.49%7.5CVE-2022-45061Python vulnerabilityAn issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3…EPSS 2.7%7.5CVE-2021-3737Python uncontrolled resource consumption vulnerabilityA flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP …EPSS 12%7.5CVE-2022-0391Python injection vulnerabilityA flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into componen…EPSS 8.3%

Source: NIST National Vulnerability Database (record CVE-2020-8583), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.