First published: Tue Apr 25 2023(Updated: )
An HPE OneView appliance dump may expose SAN switch administrative credentials
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP OneView | <6.60.04 | |
HP OneView | <8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28088 is a vulnerability that allows an HPE OneView appliance dump to expose SAN switch administrative credentials.
The severity of CVE-2023-28088 is high with a CVSS score of 7.8.
Versions of HP OneView up to and excluding 6.60.04 LTS and versions up to and excluding 8.2 are affected by CVE-2023-28088.
To fix CVE-2023-28088, update your HP OneView appliance to a version that is not affected by the vulnerability.
You can find more information about CVE-2023-28088 at the following reference: [link](https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=hpesbgn04469en_us).