Remote Authentication Bypass Vulnerability in HPE StoreServ Management Console
CVE-2020-7197
Key Information:
- Vendor
HP
- Vendor
- CVE Published:
- 26 October 2020
What is CVE-2020-7197?
HPE StoreServ Management Console (SSMC) version 3.7.0.0 is susceptible to remote authentication bypass. This vulnerability allows unauthorized users to bypass authentication mechanisms, compromising the security of the application. As SSMC acts as an off-node multi-array management tool, it remains isolated from the controlled arrays, but this flaw could still lead to unauthorized access. HPE has issued a patch that recommends upgrading to version 3.7.1.1 or later to mitigate this issue. Ensuring that your software is updated is essential to maintaining a secure environment.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
HPE 3PAR StoreServ Management and Core Software Media prior to 3.7.0.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved