logo

CVE-2026-23594: High-Severity Flaw in HPE Alletra & Nimble Grants Admin Access

ID: f191f515-b7f2-560f-8999-80b76599cbbc

STIX ID: report--f191f515-b7f2-560f-8999-80b76599cbbc

Feed Name: securityonline.info

Threat Score
72/100

Date Published: 2026-01-23

Date Updated: 2026-04-23

Author: Ddos

...
...

HPE has issued an alert for CVE-2026-23594, a remote privilege-escalation vulnerability (CVSS 8.8) affecting Alletra 5000/6000 and HPE Nimble Storage arrays running versions prior to 6.1.2.800 and certain 6.1.3 builds; administrators are advised to immediately upgrade array OS to 6.1.2.800 or 6.1.3.300 to mitigate unauthorized administrative access and the risk of data exfiltration or ransomware targeting storage infrastructure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.