FlashArray SafeMode Immutable Vulnerability
CVE-2023-28373

4.4MEDIUM

Key Information:

Vendor
CVE Published:
3 October 2023

What is CVE-2023-28373?

A flaw exists in FlashArray Purity whereby an array administrator by configuring an external key manager can affect the availability of data on the system including snapshots protected by SafeMode.

Affected Version(s)

FlashArray Purity 6.1.0 <= 6.1.22

FlashArray Purity 6.2.0 <= 6.2.15

FlashArray Purity 6.3.0 <= 6.3.6

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mountain America Credit Union (MACU)
.
CVE-2023-28373 : FlashArray SafeMode Immutable Vulnerability