LOW · 2.3

CVE-2022-37939

A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be locally exploited to allow disclosure of information. HPE has ma...

Vulnerability Description

A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be locally exploited to allow disclosure of information. HPE has made the following software to resolve the vulnerability in HPE Superdome Flex Servers v3.65.8 and Superdome Flex 280 Servers v1.45.8.

CVSS Score

2.3

LOW

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
HpeSuperdome Flex 280 Server Firmware< 1.45.8
HpeSuperdome Flex 280 Server-
HpeSuperdome Flex Server Firmware< 3.65.8
HpeSuperdome Flex Server-

References

FAQ

What is CVE-2022-37939?

CVE-2022-37939 is a vulnerability with a CVSS score of 2.3 (LOW). A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be locally exploited to allow disclosure of information. HPE has ma...

How severe is CVE-2022-37939?

CVE-2022-37939 has been rated LOW with a CVSS base score of 2.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-37939?

Check the references section above for vendor advisories and patch information. Affected products include: Hpe Superdome Flex 280 Server Firmware, Hpe Superdome Flex 280 Server, Hpe Superdome Flex Server Firmware, Hpe Superdome Flex Server.