SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2020-7137

A validation issue in HPE Superdome Flex's RMC component may allow local elevation of privilege.

MEDIUM 6.7EPSS 0.30%

Does this matter?

Lower severity and a low EPSS score (0.30%). Track it; it rarely justifies an emergency change on its own.

Description

A validation issue in HPE Superdome Flex's RMC component may allow local elevation of privilege. Apply HPE Superdome Flex Server version 3.25.46 or later to resolve this issue.

CVSS 3.1
6.7 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS
0.30% probability · 23th percentile
CISA KEV
Not listed
Weakness
CWE-20
Affected
hpe/superdome flex server firmware
Source
security-alert@hpe.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.