← back
CVE-2024-22437

HPE MSA SAN Storage VSS Provider and CAPI Proxy Software, Elevation of Privilege

CVSS 7.3 HIGHEPSS 0.2%CWE-428
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.3EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
15 Apr 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A potential security vulnerability has been identified in VSS Provider and CAPI Proxy software for certain HPE MSA storage products. This vulnerability could be exploited to gain elevated privilege on the system.
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →