CVE Published: 02/10/2023 |
CVE Updated: 23/09/2024 |
CVE Year: 2023 Source: PureStorage |
Vendor: Pure Storage |
Product: FlashArray Purity Status : PUBLISHED
CVE-2023-28373 Description
A flaw exists in FlashArray Purity whereby an array administrator by configuring an external key manager can affect the availability of data on the system including snapshots protected by SafeMode.
Metrics
CVSS Version: 3.1 |
Base Score: 4.4 MEDIUM Vector: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H
l➤ Exploitability Metrics: Attack Vector (AV)* NETWORK Attack Complexity (AC)* HIGH Privileges Required (PR)* HIGH User Interaction (UI)* NONE Scope (S)* UNCHANGED