CVE-2020-7197

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
26/10/2020
Last modified:
16/11/2020

Description

SSMC3.7.0.0 is vulnerable to remote authentication bypass. HPE StoreServ Management Console (SSMC) 3.7.0.0 is an off node multiarray manager web application and remains isolated from data on the managed arrays. HPE has provided an update to HPE StoreServ Management Console (SSMC) software 3.7.0.0* Upgrade to HPE 3PAR StoreServ Management Console 3.7.1.1 or later.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hp:storeserv_management_console:*:*:*:*:*:*:*:* 3.7.1.1 (excluding)