CVE-2021-26581
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/04/2021
Last modified:
06/04/2021
Description
A potential security vulnerability has been identified in HPE Superdome Flex server. A denial of service attack can be remotely exploited leaving hung connections to the BMC web interface. The monarch BMC must be rebooted to recover from this situation. Other BMC management is not impacted. HPE has made the following software update to resolve the vulnerability in HPE Superdome Flex Server: Superdome Flex Server Firmware 3.30.142 or later.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Base Score 2.0
4.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:hpe:superdome_flex_server_firmware:*:*:*:*:*:*:*:* | 3.30.142 (excluding) | |
cpe:2.3:h:hpe:superdome_flex_server:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page