A security vulnerability has been identified in HPE StoreServ Management Console (SSMC). An authenticated SSMC administrator could exploit the vulnerability to inject code and elevate their privilege in SSMC. The scope of this vulnerability is limited to SSMC. Note: The arrays being managed are not impacted by this vulnerability. This vulnerability impacts SSMC versions 3.4 GA to 3.8.1.
References
Link | Resource |
---|---|
https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04207en_us | Patch Vendor Advisory |
Configurations
History
12 Jul 2022, 17:42
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
14 Dec 2021, 19:09
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:hp:storeserv_management_console:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 7.2 |
CWE | CWE-94 | |
References | (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04207en_us - Patch, Vendor Advisory |
10 Dec 2021, 18:14
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-12-10 17:15
Updated : 2023-12-10 14:09
NVD link : CVE-2021-29214
Mitre link : CVE-2021-29214
CVE.ORG link : CVE-2021-29214
JSON object : View
Products Affected
hp
- storeserv_management_console
CWE