CVE-2019-11996
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Potential security vulnerabilities have been identified with HPE Nimble Storage systems in multi array group configurations. The vulnerabilities could be exploited by an attacker to gain elevated privileges on the array. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 3.9.2.0, 4.5.5.0, 5.0.8.0 and 5.1.3.0.
Han sido identificadas posibles vulnerabilidades de seguridad con los sistemas HPE Nimble Storage en configuraciones de grupos de múltiples matrices. Las vulnerabilidades podrían ser explotadas por un atacante para obtener privilegios elevados en la matriz. Las siguientes versiones de NimbleOS, y todas las versiones posteriores, contienen una corrección de software para esta vulnerabilidad: 3.9.2.0, 4.5.5.0, 5.0.8.0 y 5.1.3.0.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-05-13 CVE Reserved
- 2019-11-07 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20 All Flash Array Search vendor "Hpe" for product "Nimble Storage Af20 All Flash Array" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20q All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af20q All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af40 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af40 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af60 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af60 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af80 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af80 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs3000 Search vendor "Hpe" for product "Nimble Storage Cs3000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs5000 Search vendor "Hpe" for product "Nimble Storage Cs5000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs7000 Search vendor "Hpe" for product "Nimble Storage Cs7000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 3.1.0.0 <= 3.9.1.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 3.1.0.0 <= 3.9.1.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Secondary Flash Arrays Search vendor "Hpe" for product "Nimble Storage Secondary Flash Arrays" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20 All Flash Array Search vendor "Hpe" for product "Nimble Storage Af20 All Flash Array" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20q All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af20q All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af40 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af40 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af60 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af60 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af80 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af80 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs3000 Search vendor "Hpe" for product "Nimble Storage Cs3000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs5000 Search vendor "Hpe" for product "Nimble Storage Cs5000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs7000 Search vendor "Hpe" for product "Nimble Storage Cs7000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 4.1.0.0 <= 4.5.4.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 4.1.0.0 <= 4.5.4.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Secondary Flash Arrays Search vendor "Hpe" for product "Nimble Storage Secondary Flash Arrays" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20 All Flash Array Search vendor "Hpe" for product "Nimble Storage Af20 All Flash Array" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20q All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af20q All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af40 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af40 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af60 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af60 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af80 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af80 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs3000 Search vendor "Hpe" for product "Nimble Storage Cs3000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs5000 Search vendor "Hpe" for product "Nimble Storage Cs5000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs7000 Search vendor "Hpe" for product "Nimble Storage Cs7000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.0.1.0 <= 5.0.7.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.0.1.0 <= 5.0.7.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Secondary Flash Arrays Search vendor "Hpe" for product "Nimble Storage Secondary Flash Arrays" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20 All Flash Array Search vendor "Hpe" for product "Nimble Storage Af20 All Flash Array" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af20q All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af20q All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af40 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af40 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af60 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af60 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Af80 All Flash Dual Controller Search vendor "Hpe" for product "Nimble Storage Af80 All Flash Dual Controller" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs3000 Search vendor "Hpe" for product "Nimble Storage Cs3000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs5000 Search vendor "Hpe" for product "Nimble Storage Cs5000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Cs7000 Search vendor "Hpe" for product "Nimble Storage Cs7000" | - | - |
Safe
|
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 <= 5.1.2.0 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 <= 5.1.2.0" | - |
Affected
| in | Hpe Search vendor "Hpe" | Nimble Storage Secondary Flash Arrays Search vendor "Hpe" for product "Nimble Storage Secondary Flash Arrays" | - | - |
Safe
|