A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 Servers. The vulnerability could be locally exploited to allow an user with Administrator access to escalate their privilege. The vulnerability is resolved in the latest firmware update. HPE Superdome Flex Server Version 3.50.58 or later, HPE Superdome Flex 280 Server Version 1.20.204 or later.
References
Link | Resource |
---|---|
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04266en_us | Vendor Advisory |
Configurations
History
08 Aug 2023, 14:22
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
20 Apr 2022, 16:14
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04266en_us - Vendor Advisory | |
CWE | CWE-269 | |
CVSS |
v2 : v3 : |
v2 : 4.6
v3 : 6.7 |
CPE | cpe:2.3:o:hpe:superdome_flex_280_server_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:hpe:superdome_flex_280_server:-:*:*:*:*:*:*:* cpe:2.3:h:hpe:superdome_flex_server:-:*:*:*:*:*:*:* cpe:2.3:o:hpe:superdome_flex_server_firmware:*:*:*:*:*:*:*:* |
12 Apr 2022, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-04-12 17:15
Updated : 2024-02-04 22:29
NVD link : CVE-2022-23702
Mitre link : CVE-2022-23702
CVE.ORG link : CVE-2022-23702
JSON object : View
Products Affected
hpe
- superdome_flex_280_server_firmware
- superdome_flex_280_server
- superdome_flex_server_firmware
- superdome_flex_server
CWE