Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-7139

Опубликовано: 19 мая 2020
Источник: nvd
CVSS3: 8.1
CVSS2: 5.5
EPSS Низкий

Описание

Potential remote access security vulnerabilities have been identified with HPE Nimble Storage systems that could be exploited by an attacker to access and modify sensitive information on the system. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 3.9.3.0 4.5.6.0 5.0.9.0 5.1.4.100

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:hpe:nimbleos:*:*:*:*:*:*:*:*
Версия от 3.1.0.0 (включая) до 3.9.3.0 (включая)
cpe:2.3:o:hpe:nimbleos:*:*:*:*:*:*:*:*
Версия от 4.1.0.0 (включая) до 4.5.6.0 (включая)
cpe:2.3:o:hpe:nimbleos:*:*:*:*:*:*:*:*
Версия от 5.0.1.0 (включая) до 5.0.9.0 (включая)
cpe:2.3:o:hpe:nimbleos:*:*:*:*:*:*:*:*
Версия от 5.1.0.0 (включая) до 5.1.4.100 (включая)

Одно из

cpe:2.3:h:hpe:nimble_storage_af20_all_flash_array:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_af20q_all_flash_dual_controller:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_af40_all_flash_dual_controller:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_af60_all_flash_dual_controller:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_af80_all_flash_dual_controller:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_cs3000:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_cs5000:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_cs7000:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:nimble_storage_secondary_flash_arrays:-:*:*:*:*:*:*:*

EPSS

Процентиль: 54%
0.00317
Низкий

8.1 High

CVSS3

5.5 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

Potential remote access security vulnerabilities have been identified with HPE Nimble Storage systems that could be exploited by an attacker to access and modify sensitive information on the system. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 3.9.3.0 4.5.6.0 5.0.9.0 5.1.4.100

EPSS

Процентиль: 54%
0.00317
Низкий

8.1 High

CVSS3

5.5 Medium

CVSS2

Дефекты

NVD-CWE-noinfo