📦 Purity\/\/fa

by Purestorage

🔍 What is Purity\/\/fa?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-0005

CRITICAL CVSS 9.1 Sep 23, 2024

This vulnerability allows remote attackers to execute arbitrary commands on FlashArray and FlashBlade Purity storage systems by sending specially crafted SNMP configuration data. Attackers could gain ...

CVE-2024-0001

CRITICAL CVSS 10.0 Sep 23, 2024

A local administrative account intended for initial FlashArray configuration remains active after setup, allowing attackers with local access to gain elevated privileges. This affects Pure Storage Fla...

CVE-2024-0003

CRITICAL CVSS 9.1 Sep 23, 2024

This vulnerability allows a malicious user to exploit a remote administrative service in FlashArray Purity to create unauthorized privileged accounts on the storage array. This affects organizations u...

CVE-2022-32554

CRITICAL CVSS 9.8 Jun 23, 2022

This vulnerability exposes credentials for Pure Storage FlashArray and FlashBlade management interfaces, potentially allowing attackers with network access to execute arbitrary commands with root priv...

CVE-2023-36628

HIGH CVSS 8.8 Oct 3, 2023

This vulnerability allows users with VMware admin access on a FlashArray to escalate privileges to root through VASA. It affects VMware vSphere/ESXi environments integrated with Pure Storage FlashArra...

CVE-2022-32553

HIGH CVSS 8.8 Jun 23, 2022

This vulnerability allows logged-in users on affected Pure Storage FlashArray and FlashBlade systems to escalate privileges by manipulating environment variables. Attackers can escape restricted shell...