Back

CRITICAL

A condition exists in FlashArray Purity whereby an attacker can employ a privileged account allowing remote access to the array

Published Sep 23, 2024

Description

A condition exists in FlashArray Purity whereby an attacker can employ a privileged account allowing remote access to the array.

Affected products

Remediation

Vendor solution

Affected customers will need to apply a self-service patch bundle or upgrade their Purity to an unaffected Purity version.

This issue is resolved in the following FlashArray Purity releases:

* Purity//FA versions 6.3.15 or later * Purity//FA versions 6.5.1 or later * Purity//FA versions 6.6.1 or later.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner PureStorage
Published Sep 23, 2024
Updated Sep 23, 2024
Reserved Nov 1, 2023
CISA Vulnrichment
Updated Sep 23, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a