Page 5 of 69 results (0.003 seconds)

CVSS: 7.7EPSS: 0%CPEs: 1EXPL: 0

HPE System Management Homepage before 7.5.4 allows local users to obtain sensitive information or modify data via unspecified vectors. HPE System Management Homepage en versiones anteriores a 7.5.4 permite a usuarios locales obtener información sensible o modificar datos a través de vectores no especificados. • http://www.securitytracker.com/id/1035325 https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763 •

CVSS: 8.1EPSS: 0%CPEs: 1EXPL: 0

HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors. HPE System Management Homepage en versiones anteriores a 7.5.4 permite a usuarios remotos autenticados obtener información sensible o modificar datos a través de vectores no especificados. • http://www.securitytracker.com/id/1035325 https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763 •

CVSS: 10.0EPSS: 2%CPEs: 1EXPL: 0

HPE System Management Homepage before 7.5.4 allows remote attackers to execute arbitrary code via unspecified vectors. HPE System Management Homepage en versiones anteriores a 7.5.4 permite a atacantes remotos ejecutar código arbitrario a través de vectores no especificados. • http://www.securitytracker.com/id/1035325 https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763 •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information via unspecified vectors. HPE System Management Homepage en versiones anteriores a 7.5.4 permite a usuarios remotos autenticados obtener información sensible a través de vectores no especificados. • http://www.securitytracker.com/id/1035325 https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 6.0EPSS: 0%CPEs: 1EXPL: 0

Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.5.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. Vulnerabilidad de Cross-site request forgery (CSRF) en HP System Management Homepage (SMH) en sus versiones anteriores a la 7.5.0 permite a usuarios remotos autenticados secuestrar la autenticación de víctimas no especificadas a través de vectores desconocidos. • http://marc.info/?l=bugtraq&m=144050155601375&w=2 http://www.securityfocus.com/bid/75961 http://www.securitytracker.com/id/1033014 https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04746490 • CWE-352: Cross-Site Request Forgery (CSRF) •