First published: Mon Jun 27 2022(Updated: )
A potential security vulnerability has been identified in HPE StoreOnce Software. The SSH server supports weak key exchange algorithms which could lead to remote unauthorized access. HPE has made the following software update to resolve the vulnerability in HPE StoreOnce Software 4.3.2.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hpe Storeonce 3640 Firmware | <4.3.2 | |
Hpe Storeonce 3640 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-28622 is high with a severity value of 7.5.
CVE-2022-28622 could lead to remote unauthorized access due to weak key exchange algorithms in the SSH server.
You can resolve CVE-2022-28622 by updating your HPE StoreOnce Software to version 4.3.2.
HPE StoreOnce Software versions up to version 4.3.2 are affected by CVE-2022-28622.
HPE StoreOnce 3640 Firmware is vulnerable to CVE-2022-28622 unless it is updated to version 4.3.2.