CVE-2022-37930

A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays and HPE Nimble Storage Secondary Flash Arrays which could potentially allow local disclosure of sensitive information.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:hpe:sf100_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:sf100_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:sf100:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:hpe:sf300_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:sf300_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:sf300:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:hpe:hf60c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf60c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf60c:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:o:hpe:hf40c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf40c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf40c:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
OR cpe:2.3:o:hpe:hf20_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
OR cpe:2.3:o:hpe:hf40_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf40_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf40:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
OR cpe:2.3:o:hpe:hf60_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf60_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf60:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
OR cpe:2.3:o:hpe:hf20h_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20h_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20h:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
OR cpe:2.3:o:hpe:hf20c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20c:-:*:*:*:*:*:*:*

History

07 Nov 2023, 03:49

Type Values Removed Values Added
Summary A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays and HPE Nimble Storage Secondary Flash Arrays which could potentially allow local disclosure of sensitive information. A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays and HPE Nimble Storage Secondary Flash Arrays which could potentially allow local disclosure of sensitive information.

14 Dec 2022, 21:29

Type Values Removed Values Added
CPE cpe:2.3:o:hpe:hf60c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:sf300_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:hf40c:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf40_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:hf60c:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:sf100_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf40_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf40c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:sf300_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20h:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf20_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf60c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:hf40:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf20_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:sf100_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:h:hpe:sf100:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:sf300:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf60_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:h:hpe:hf20:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:hf60:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:hf20c:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:hf40c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20h_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf20c_firmware:5.3.0.0:*:*:*:-:*:*:*
cpe:2.3:o:hpe:hf20c_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf60_firmware:*:*:*:*:ltsr:*:*:*
cpe:2.3:o:hpe:hf20h_firmware:*:*:*:*:ltsr:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Hpe
Hpe hf60c
Hpe sf300 Firmware
Hpe hf40 Firmware
Hpe sf300
Hpe hf40
Hpe hf20h
Hpe hf20c Firmware
Hpe hf20c
Hpe hf60 Firmware
Hpe hf40c
Hpe hf20 Firmware
Hpe hf20h Firmware
Hpe hf40c Firmware
Hpe sf100 Firmware
Hpe sf100
Hpe hf20
Hpe hf60c Firmware
Hpe hf60
CWE NVD-CWE-noinfo
References (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04361en_us - (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04361en_us - Vendor Advisory

12 Dec 2022, 13:17

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-12 13:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-37930

Mitre link : CVE-2022-37930

CVE.ORG link : CVE-2022-37930


JSON object : View

Products Affected

hpe

  • sf300_firmware
  • hf40
  • sf100
  • hf60c
  • hf60c_firmware
  • hf40c
  • hf20
  • hf20h_firmware
  • hf60
  • hf60_firmware
  • sf100_firmware
  • hf20c_firmware
  • hf20c
  • hf20h
  • hf40_firmware
  • sf300
  • hf40c_firmware
  • hf20_firmware