AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-23703

HIGH · CVSS 7.5 EPSS 0.77%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-04-12 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. See the original NVD description below for full technical details.

CVE
CVE-2022-23703
Severity
HIGH
CVSS
7.5
EPSS
0.77%

Original NVD Description

A security vulnerability has been identified in HPE Nimble Storage Hybrid Flash Arrays, HPE Nimble Storage All Flash Arrays and HPE Nimble Storage Secondary Flash Arrays during update. This would potentially allow an attacker to intercept and modify network communication for software updates initiated by the Nimble appliance. The following NimbleOS versions, and all subsequent releases, contain a software fix for this vulnerability: 5.0.10.100, 5.2.1.500, 6.0.0.100

Related CVEs

Other vulnerabilities affecting the same vendor(s)