PT-2019-12627 · Hewlett Packard · Hpe Nimble Storage

Published

2019-11-07

·

Updated

2020-08-24

·

CVE-2019-11996

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HPE Nimble Storage systems versions prior to 3.9.2.0 HPE Nimble Storage systems versions prior to 4.5.5.0 HPE Nimble Storage systems versions prior to 5.0.8.0 HPE Nimble Storage systems versions prior to 5.1.3.0
Description The issue concerns potential security vulnerabilities in HPE Nimble Storage systems, specifically in multi-array group configurations. These vulnerabilities could allow an attacker to gain elevated privileges on the array.
Recommendations For versions prior to 3.9.2.0, update to version 3.9.2.0 or later to resolve the issue. For versions prior to 4.5.5.0, update to version 4.5.5.0 or later to resolve the issue. For versions prior to 5.0.8.0, update to version 5.0.8.0 or later to resolve the issue. For versions prior to 5.1.3.0, update to version 5.1.3.0 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-11996

Affected Products

Hpe Nimble Storage