SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2023-28373

A flaw exists in FlashArray Purity whereby an array administrator by configuring an external key manager can affect the availability of data on the system including snapshots protected by SafeMode.

LOW 2.7EPSS 0.43%

Does this matter?

Lower severity and a low EPSS score (0.43%). Track it; it rarely justifies an emergency change on its own.

Description

A flaw exists in FlashArray Purity whereby an array administrator by configuring an external key manager can affect the availability of data on the system including snapshots protected by SafeMode.

CVSS 3.1
2.7 LOWCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
EPSS
0.43% probability · 37th percentile
CISA KEV
Not listed
Affected
purestorage/purity\/\/fa
Source
psirt@purestorage.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.