CVE-2021-26588: Critical severity hpe 3par os vulnerability
A potential security vulnerability has been identified in HPE 3PAR StoreServ, HPE Primera Storage and HPE Alletra 9000 Storage array firmware. An unauthenticated user could remotely exploit the low complexity issue to execute code as administrator. This vulnerability impacts completely the confidentiality, integrity, availability of the array. HPE has made the following software updates and mitigation information to resolve the vulnerability in 3PAR, Primera and Alletra 9000 firmware.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-26588?
CVE-2021-26588 is a potential security vulnerability identified in HPE 3PAR StoreServ, HPE Primera Storage, and HPE Alletra 9000 Storage array firmware.
How does CVE-2021-26588 impact HPE products?
CVE-2021-26588 allows an unauthenticated user to remotely exploit a low complexity issue and execute code as an administrator, impacting the security of HPE 3PAR StoreServ, HPE Primera Storage, and HPE Alletra 9000 Storage.
Which versions of HPE 3PAR StoreServ are affected by CVE-2021-26588?
Versions 3.3.1_mp5_p156, 3.3.1_mu1, 3.3.1_mu2_p157, and 3.3.2_ga_p_01 of HPE 3PAR StoreServ are affected by CVE-2021-26588.
Are the HPE 3PAR StoreServ 10400, 10800, 20000, 7200c, 7400c, 7440c, 8000, and 9000 vulnerable to CVE-2021-26588?
No, the HPE 3PAR StoreServ 10400, 10800, 20000, 7200c, 7400c, 7440c, 8000, and 9000 are not vulnerable to CVE-2021-26588.
Where can I find more information about CVE-2021-26588?
You can find more information about CVE-2021-26588 on the HPE support website: [link](https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst04191en_us).