6.7

CVE-2022-37930

A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays and HPE Nimble Storage Secondary Flash Arrays which could potentially allow local disclosure of sensitive information.

Data is provided by the National Vulnerability Database (NVD)
HpeSf100 Firmware SwEditionltsr Version < 5.2.1.900
   HpeSf100 Version-
HpeSf100 Firmware Version5.3.0.0 SwEdition-
   HpeSf100 Version-
HpeSf300 Firmware SwEditionltsr Version < 5.2.1.900
   HpeSf300 Version-
HpeSf300 Firmware Version5.3.0.0 SwEdition-
   HpeSf300 Version-
HpeHf60c Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf60c Version-
HpeHf60c Firmware Version5.3.0.0 SwEdition-
   HpeHf60c Version-
HpeHf40c Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf40c Version-
HpeHf40c Firmware Version5.3.0.0 SwEdition-
   HpeHf40c Version-
HpeHf20 Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf20 Version-
HpeHf20 Firmware Version5.3.0.0 SwEdition-
   HpeHf20 Version-
HpeHf40 Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf40 Version-
HpeHf40 Firmware Version5.3.0.0 SwEdition-
   HpeHf40 Version-
HpeHf60 Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf60 Version-
HpeHf60 Firmware Version5.3.0.0 SwEdition-
   HpeHf60 Version-
HpeHf20h Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf20h Version-
HpeHf20h Firmware Version5.3.0.0 SwEdition-
   HpeHf20h Version-
HpeHf20c Firmware SwEditionltsr Version < 5.2.1.900
   HpeHf20c Version-
HpeHf20c Firmware Version5.3.0.0 SwEdition-
   HpeHf20c Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.177
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
security-alert@hpe.com 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.