10 results (0.014 seconds)

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

16 Jul 2024 — The vulnerability could be remotely exploited to bypass authentication. • https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbst04663en_us&docLocale=en_US • CWE-287: Improper Authentication •

CVSS: 6.4EPSS: 0%CPEs: 45EXPL: 0

03 Nov 2022 — Cross Site Scripting vulnerability in Hewlett Packard Enterprise Integrated Lights-Out 5. Vulnerabilidad de Cross-Site Scripting en Hewlett Packard Enterprise Integrated Lights-Out 5. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf04133en_us • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

09 Aug 2019 — A remote session reuse vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. Se detectó una vulnerabilidad de reutilización de sesión remota en HPE 3PAR Service Processor versión(es): anteriores a 5.0.5.1. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03942en_us • CWE-384: Session Fixation •

CVSS: 9.7EPSS: 0%CPEs: 2EXPL: 0

09 Aug 2019 — A remote gain authorized access vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. Se detectó una vulnerabilidad de obtención de acceso autorizado remota en HPE 3PAR Service Processor versión(es): anteriores a 5.0.5.1. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03942en_us •

CVSS: 5.4EPSS: 0%CPEs: 2EXPL: 0

09 Aug 2019 — A remote multiple multiple cross-site vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. Se detectó una vulnerabilidad de tipo cross-site múltiple remota en HPE 3PAR Service Processor versión(es): anteriores a 5.0.5.1. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03942en_us • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 9.7EPSS: 1%CPEs: 2EXPL: 0

09 Aug 2019 — A remote bypass of security restrictions vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. Se detectó una vulnerabilidad de omisión de las restricciones de seguridad remota en HPE 3PAR Service Processor versión(es): anteriores a 5.0.5.1. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03942en_us • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 9.7EPSS: 1%CPEs: 2EXPL: 0

09 Aug 2019 — A remote authentication bypass vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. Se detectó una vulnerabilidad de omisión de autenticación remota en HPE 3PAR Service Processor versión(es): anteriores a 5.0.5.1. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03942en_us •

CVSS: 8.8EPSS: 0%CPEs: 2EXPL: 0

09 Aug 2019 — A remote arbitrary file upload vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1. Se detectó una vulnerabilidad de carga de archivos arbitraria remota en HPE 3PAR Service Processor versión(es): anteriores a 5.0.5.1. • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03942en_us • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 9.8EPSS: 2%CPEs: 2EXPL: 0

09 Jul 2019 — HPE has identified a vulnerability in HPE 3PAR Service Processor (SP) version 4.1 through 4.4. HPE 3PAR Service Processor (SP) version 4.1 through 4.4 has a remote information disclosure vulnerability which can allow for the disruption of the confidentiality, integrity and availability of the Service Processor and any managed 3PAR arrays. HPE ha identificado una vulnerabilidad en HPE 3PAR Service Processor (SP) versión 4.1 hasta 4.4. HPE 3PAR Service Processor (SP) versión 4.1 hasta 4.4 presenta una vulnera... • https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbst03918en_us • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 6.5EPSS: 0%CPEs: 3EXPL: 0

01 Oct 2015 — HP 3PAR Service Processor SP 4.2.0.GA-29 (GA) SPOCC, SP 4.3.0.GA-17 (GA) SPOCC, and SP 4.3.0-GA-24 (MU1) SPOCC allows remote authenticated users to obtain sensitive information via unspecified vectors. HP 3PAR Service Processor SPA 4.2.0.GA-29 (GA) SPOCC, SP 4.3.0.GA-17 (GA) SPOCC y SP 4.3.0-GA-24 (MU1) SPOCC permite a usuarios remotos autenticados obtener información sensible a través de vectores no especificados. A potential security vulnerability has been identified in HP 3PAR Service Processor (SP) SPOC... • https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04822249 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •