A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 Servers. The vulnerability could be locally exploited to allow an user with Administrator access to escalate their privilege. The vulnerability is resolved in the latest firmware update. HPE Superdome Flex Server Version 3.50.58 or later, HPE Superdome Flex 280 Server Version 1.20.204 or later.
References
Link | Resource |
---|---|
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04266en_us | Vendor Advisory |
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04266en_us | Vendor Advisory |
Configurations
History
21 Nov 2024, 06:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04266en_us - Vendor Advisory |
08 Aug 2023, 14:22
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
20 Apr 2022, 16:14
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04266en_us - Vendor Advisory | |
CWE | CWE-269 | |
CVSS |
v2 : v3 : |
v2 : 4.6
v3 : 6.7 |
CPE | cpe:2.3:o:hpe:superdome_flex_280_server_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:hpe:superdome_flex_280_server:-:*:*:*:*:*:*:* cpe:2.3:h:hpe:superdome_flex_server:-:*:*:*:*:*:*:* cpe:2.3:o:hpe:superdome_flex_server_firmware:*:*:*:*:*:*:*:* |
12 Apr 2022, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-04-12 17:15
Updated : 2024-11-21 06:49
NVD link : CVE-2022-23702
Mitre link : CVE-2022-23702
CVE.ORG link : CVE-2022-23702
JSON object : View
Products Affected
hpe
- superdome_flex_server_firmware
- superdome_flex_280_server_firmware
- superdome_flex_server
- superdome_flex_280_server
CWE