CVE-2022-37929

Improper Privilege Management vulnerability in Hewlett Packard Enterprise Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:hpe:sf100_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:sf100_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:sf100:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:hpe:sf300_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:sf300_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:sf300:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:hpe:hf60c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf60c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf60c:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:o:hpe:hf40c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf40c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf40c:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
OR cpe:2.3:o:hpe:hf20_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
OR cpe:2.3:o:hpe:hf40_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf40_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf40:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
OR cpe:2.3:o:hpe:hf60_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf60_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf60:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
OR cpe:2.3:o:hpe:hf20h_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20h_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20h:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
OR cpe:2.3:o:hpe:hf20c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20c:-:*:*:*:*:*:*:*

History

07 Nov 2023, 03:49

Type Values Removed Values Added
Summary Improper Privilege Management vulnerability in Hewlett Packard Enterprise Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays. Improper Privilege Management vulnerability in Hewlett Packard Enterprise Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays.

13 Dec 2022, 20:45

Type Values Removed Values Added
CWE CWE-269
CPE cpe:2.3:o:hpe:hf60c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:sf300_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:hf40c:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf40_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:hf60c:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:sf100_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf40_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf40c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:sf300_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20h:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf20_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf60c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:hf40:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf20_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:sf100_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:sf100:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:sf300:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf60_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:hf60:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:hf20c:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf40c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20h_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf20c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf20c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf60_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20h_firmware:*:*:*:*:ltsr:*:*:*
First Time Hpe
Hpe hf60c
Hpe sf300 Firmware
Hpe hf40 Firmware
Hpe sf300
Hpe hf40
Hpe hf20h
Hpe hf20c Firmware
Hpe hf20c
Hpe hf60 Firmware
Hpe hf40c
Hpe hf20 Firmware
Hpe hf20h Firmware
Hpe hf40c Firmware
Hpe sf100 Firmware
Hpe sf100
Hpe hf20
Hpe hf60c Firmware
Hpe hf60
References (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04360en_us - (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04360en_us - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5

12 Dec 2022, 13:17

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-12 13:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-37929

Mitre link : CVE-2022-37929

CVE.ORG link : CVE-2022-37929


JSON object : View

Products Affected

hpe

  • sf300_firmware
  • hf40
  • sf100
  • hf60c
  • hf60c_firmware
  • hf40c
  • hf20
  • hf20h_firmware
  • hf60
  • hf60_firmware
  • sf100_firmware
  • hf20c_firmware
  • hf20c
  • hf20h
  • hf40_firmware
  • sf300
  • hf40c_firmware
  • hf20_firmware
CWE
CWE-269

Improper Privilege Management