In default installations of Microchip maxView Storage Manager (for Adaptec Smart Storage Controllers) where Redfish server is configured for remote system management, unauthorized access can occur, with data modification and information disclosure. This affects 3.00.23484 through 4.14.00.26064 (except for the patched versions 3.07.23980 and 4.07.00.25339).
History

Wed, 18 Jun 2025 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics cvssV3_1

{'score': 10.0, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-01-08T00:00:00.000Z

Updated: 2025-06-18T16:54:35.287Z

Reserved: 2024-01-08T00:00:00.000Z

Link: CVE-2024-22216

cve-icon Vulnrichment

Updated: 2024-08-01T22:35:34.882Z

cve-icon NVD

Status : Modified

Published: 2024-01-08T07:15:11.547

Modified: 2025-06-18T17:15:27.930

Link: CVE-2024-22216

cve-icon Redhat

No data.