A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware.

Project Subscriptions

Vendors Products
3par Os Subscribe
3par Storeserv 10400 Subscribe
3par Storeserv 10800 Subscribe
3par Storeserv 20000 Subscribe
3par Storeserv 7200c Subscribe
3par Storeserv 7400c Subscribe
3par Storeserv 7440c Subscribe
3par Storeserv 8000 Subscribe
3par Storeserv 9000 Subscribe
Alletra 9060 Subscribe
Alletra 9060 Firmware Subscribe
Alletra 9080 Subscribe
Alletra 9080 Firmware Subscribe
Primera 630 Subscribe
Primera 630 Firmware Subscribe
Primera 650 Subscribe
Primera 650 Firmware Subscribe
Primera 670 Subscribe
Primera 670 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-13386 A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: hpe

Published:

Updated: 2024-08-03T20:26:25.484Z

Reserved: 2021-02-02T00:00:00

Link: CVE-2021-26588

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-10-11T17:15:07.637

Modified: 2024-11-21T05:56:32.380

Link: CVE-2021-26588

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses