CVE-2023-30910

MEDIUM

HPE Msa 1060 Storage Firmware < in210r004 - HTTP Request Smuggling

Title source: rule
STIX 2.1

Description

HPE MSA Controller prior to version IN210R004 could be remotely exploited to allow inconsistent interpretation of HTTP requests. 

Scores

CVSS v3 5.4
EPSS 0.0011
EPSS Percentile 28.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-444
Status published
Products (3)
hpe/msa_1060_storage_firmware < in210r004
hpe/msa_2060_storage_firmware < in210r004
hpe/msa_2062_storage_firmware < in210r004
Published Oct 09, 2023
Tracked Since Feb 18, 2026