CVE-2022-23703
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays, HPE Nimble Storage All Flash Arrays and HPE Nimble Storage Secondary Flash Arrays during update. This would potentially allow an attacker to intercept and modify network communication for software updates initiated by the Nimble appliance. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 5.0.10.100, 5.2.1.500, 6.0.0.100
Se ha identificado una vulnerabilidad de seguridad en HPE Nimble Storage Hybrid Flash Arrays, HPE Nimble Storage All Flash Arrays y HPE Nimble Storage Secondary Flash Arrays durante la actualización. Esto podría permitir a un atacante interceptar y modificar la comunicación de red para las actualizaciones de software iniciadas por el dispositivo Nimble. Las siguientes versiones de NimbleOS, y todas las posteriores, contienen una corrección de software para esta vulnerabilidad: 5.0.10.100, 5.2.1.500, 6.0.0.100
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-01-19 CVE Reserved
- 2022-04-12 CVE Published
- 2023-11-03 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | < 5.0.10.100 Search vendor "Hpe" for product "Nimbleos" and version " < 5.0.10.100" | - |
Affected
| ||||||
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | >= 5.1.0.0 < 5.2.1.500 Search vendor "Hpe" for product "Nimbleos" and version " >= 5.1.0.0 < 5.2.1.500" | - |
Affected
| ||||||
Hpe Search vendor "Hpe" | Nimbleos Search vendor "Hpe" for product "Nimbleos" | 5.3.1.0 Search vendor "Hpe" for product "Nimbleos" and version "5.3.1.0" | - |
Affected
|