CVE-2021-26588
Summary
| CVE | CVE-2021-26588 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-10-11 17:15:00 UTC |
| Updated | 2021-10-18 17:52:00 UTC |
| Description | A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Hpe | 3par Os | 3.3.1_mp5_p156 | All | All | All |
| Operating System | Hpe | 3par Os | 3.3.1_mu1 | All | All | All |
| Operating System | Hpe | 3par Os | 3.3.1_mu2_p157 | All | All | All |
| Operating System | Hpe | 3par Os | 3.3.2_ga_p_01 | All | All | All |
| Hardware | Hpe | 3par Storeserv 10400 | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 10800 | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 20000 | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 7200c | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 7400c | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 7440c | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 8000 | - | All | All | All |
| Hardware | Hpe | 3par Storeserv 9000 | - | All | All | All |
| Hardware | Hpe | Alletra 9060 | - | All | All | All |
| Operating System | Hpe | Alletra 9060 Firmware | All | All | All | All |
| Hardware | Hpe | Alletra 9080 | - | All | All | All |
| Operating System | Hpe | Alletra 9080 Firmware | All | All | All | All |
| Hardware | Hpe | Primera 630 | - | All | All | All |
| Operating System | Hpe | Primera 630 Firmware | All | All | All | All |
| Hardware | Hpe | Primera 650 | - | All | All | All |
| Operating System | Hpe | Primera 650 Firmware | All | All | All | All |
| Hardware | Hpe | Primera 670 | - | All | All | All |
| Operating System | Hpe | Primera 670 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Document Display | HPE Support Center | MISC | support.hpe.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.