VYPR
High severity8.0NVD Advisory· Published Dec 12, 2022· Updated Jun 17, 2026

CVE-2022-37928

CVE-2022-37928

Description

Insufficient Verification of Data Authenticity vulnerability in Hewlett Packard Enterprise HPE Nimble Storage Hybrid Flash Arrays and Nimble Storage Secondary Flash Arrays.

Affected products

21
  • HPE/Hf20 Firmware2 versions
    cpe:2.3:o:hpe:hf20_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf20_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf20_firmware:5.3.0.0:*:*:*:-:*:*:*
  • cpe:2.3:o:hpe:hf20c_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf20c_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf20c_firmware:5.3.0.0:*:*:*:-:*:*:*
  • cpe:2.3:o:hpe:hf20h_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf20h_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf20h_firmware:5.3.0.0:*:*:*:-:*:*:*
  • HPE/Hf40 Firmware2 versions
    cpe:2.3:o:hpe:hf40_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf40_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf40_firmware:5.3.0.0:*:*:*:-:*:*:*
  • cpe:2.3:o:hpe:hf40c_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf40c_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf40c_firmware:5.3.0.0:*:*:*:-:*:*:*
  • HPE/Hf60 Firmware2 versions
    cpe:2.3:o:hpe:hf60_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf60_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf60_firmware:5.3.0.0:*:*:*:-:*:*:*
  • cpe:2.3:o:hpe:hf60c_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:hf60c_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:hf60c_firmware:5.3.0.0:*:*:*:-:*:*:*
  • cpe:2.3:o:hpe:sf100_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:sf100_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:sf100_firmware:5.3.0.0:*:*:*:-:*:*:*
  • cpe:2.3:o:hpe:sf300_firmware:*:*:*:*:ltsr:*:*:*+ 1 more
    • cpe:2.3:o:hpe:sf300_firmware:*:*:*:*:ltsr:*:*:*range: <5.2.1.900
    • cpe:2.3:o:hpe:sf300_firmware:5.3.0.0:*:*:*:-:*:*:*
  • Hewlett Packard Enterprise (HPE)/HPE Nimble Storage Hybrid Flash Arrays; Nimble Storage Secondary Flash Arraysv5
    Range: Prior to 5.2.1.900 (LTSR), 5.3.0.0 (GA)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.