A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Hpe
Subscribe
|
3par Os
Subscribe
3par Storeserv 10400
Subscribe
3par Storeserv 10800
Subscribe
3par Storeserv 20000
Subscribe
3par Storeserv 7200c
Subscribe
3par Storeserv 7400c
Subscribe
3par Storeserv 7440c
Subscribe
3par Storeserv 8000
Subscribe
3par Storeserv 9000
Subscribe
Alletra 9060
Subscribe
Alletra 9060 Firmware
Subscribe
Alletra 9080
Subscribe
Alletra 9080 Firmware
Subscribe
Primera 630
Subscribe
Primera 630 Firmware
Subscribe
Primera 650
Subscribe
Primera 650 Firmware
Subscribe
Primera 670
Subscribe
Primera 670 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-13386 | A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2024-08-03T20:26:25.484Z
Reserved: 2021-02-02T00:00:00
Link: CVE-2021-26588
No data.
Status : Modified
Published: 2021-10-11T17:15:07.637
Modified: 2024-11-21T05:56:32.380
Link: CVE-2021-26588
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD