Vulnerabilidades em PureStorage
8 resultadosAnálise Vexday
Pure Storage registra 8 vulnerabilidades na base Vexday, com 6 delas classificadas como críticas, porém nenhuma sob ataque ativo conhecido (KEV). A fraqueza dominante é CWE-269 (Improper Access Control), padrão de risco moderado. O panorama não apresenta pressão temporal imediata, pois não há publicações recentes, permitindo ciclos normais de remediação.
CVE-2024-0004CRITICALA condition exists in FlashArray Purity whereby an user with array admin role can execute arbitrary commands remotely to escalate privilege EPSS 0.6%CVE-2024-0005CRITICALA condition exists in FlashArray and FlashBlade Purity whereby a malicious user could execute arbitrary commands remotely through a specificEPSS 0.6%CVE-2024-0002CRITICALA condition exists in FlashArray Purity whereby an attacker can employ a privileged account allowing remote access to the array.EPSS 0.6%CVE-2024-0003CRITICALA condition exists in FlashArray Purity whereby a malicious user could use a remote administrative service to create an account on the arrayEPSS 0.5%CVE-2024-3057CRITICALA flaw exists whereby a user can make a specific call to a FlashArray endpoint allowing privilege escalation.EPSS 0.4%CVE-2023-4976CRITICALFlashBlade Authentication Mechanism VulnerabilityEPSS 0.4%CVE-2026-0209MEDIUMUnder certain administrative conditions, FlashArray Purity may apply snapshot retention policies earlier or later than configured.EPSS 0.4%CVE-2026-0207HIGHSensitive Information Logging Vulnerability in FlashBladeEPSS 0.4%