A flaw exists in VASA which allows users with access to a vSphere/ESXi VMware admin on a FlashArray to gain root access through privilege escalation.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-40572 | A flaw exists in VASA which allows users with access to a vSphere/ESXi VMware admin on a FlashArray to gain root access through privilege escalation. |
Fixes
Solution
This issue is resolved in FlashArray Purity (OE) versions 6.3.12 and later, 6.4.6 and later.
Workaround
No workaround given by the vendor.
References
History
Mon, 23 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-269 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: PureStorage
Published:
Updated: 2024-09-23T13:35:46.180Z
Reserved: 2023-06-25T15:05:39.900Z
Link: CVE-2023-36628
Updated: 2024-08-02T16:52:54.069Z
Status : Modified
Published: 2023-10-03T00:15:10.057
Modified: 2024-11-21T08:10:06.790
Link: CVE-2023-36628
No data.
OpenCVE Enrichment
No data.
EUVD