CVE-2015-2802
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An Information Disclosure vulnerability exists in HP SiteScope 11.2 and 11.3 on Windows, Linux and Solaris, HP Asset Manager 9.30 through 9.32, 9.40 through 9.41, 9.50, and Asset Manager Cloudsystem Chargeback 9.40, which could let a remote malicious user obtain sensitive information. This is the TLS vulnerability known as the RC4 cipher Bar Mitzvah vulnerability.
Se presenta una vulnerabilidad de divulgación de información en HP SiteScope versiones 11.2 y 11.3 en Windows, Linux y Solaris, HP Asset Manager versiones 9.30 hasta 9.32, 9.40 hasta 9.41, 9.50 y Asset Manager Cloudsystem Chargeback versión 9.40, lo que podría permitir a un usuario malicioso remoto obtener información confidencial. Esta es la vulnerabilidad TLS, se conoce como la vulnerabilidad RC4 Cipher Bar Mitzvah.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-03-30 CVE Reserved
- 2015-06-17 CVE Published
- 2024-07-02 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://marc.info/?l=bugtraq&m=143455780010289&w=2 | Mailing List | |
http://marc.info/?l=bugtraq&m=143629738517220&w=2 | Mailing List | |
http://www.securityfocus.com/bid/75258 | Third Party Advisory | |
https://packetstormsecurity.com/files/cve/CVE-2015-2802 | Third Party Advisory | |
https://securitytracker.com/id/1032599 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Hp Search vendor "Hp" | Sitescope Search vendor "Hp" for product "Sitescope" | >= 11.20 <= 11.24 Search vendor "Hp" for product "Sitescope" and version " >= 11.20 <= 11.24" | - |
Affected
| in | Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | - | - |
Safe
|
Hp Search vendor "Hp" | Sitescope Search vendor "Hp" for product "Sitescope" | >= 11.20 <= 11.24 Search vendor "Hp" for product "Sitescope" and version " >= 11.20 <= 11.24" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Hp Search vendor "Hp" | Sitescope Search vendor "Hp" for product "Sitescope" | >= 11.20 <= 11.24 Search vendor "Hp" for product "Sitescope" and version " >= 11.20 <= 11.24" | - |
Affected
| in | Oracle Search vendor "Oracle" | Solaris Search vendor "Oracle" for product "Solaris" | - | - |
Safe
|
Hp Search vendor "Hp" | Sitescope Search vendor "Hp" for product "Sitescope" | 11.30 Search vendor "Hp" for product "Sitescope" and version "11.30" | - |
Affected
| in | Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | - | - |
Safe
|
Hp Search vendor "Hp" | Sitescope Search vendor "Hp" for product "Sitescope" | 11.30 Search vendor "Hp" for product "Sitescope" and version "11.30" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Hp Search vendor "Hp" | Sitescope Search vendor "Hp" for product "Sitescope" | 11.30 Search vendor "Hp" for product "Sitescope" and version "11.30" | - |
Affected
| in | Oracle Search vendor "Oracle" | Solaris Search vendor "Oracle" for product "Solaris" | - | - |
Safe
|
Hp Search vendor "Hp" | Asset Manager Search vendor "Hp" for product "Asset Manager" | 9.30 Search vendor "Hp" for product "Asset Manager" and version "9.30" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Asset Manager Search vendor "Hp" for product "Asset Manager" | 9.31 Search vendor "Hp" for product "Asset Manager" and version "9.31" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Asset Manager Search vendor "Hp" for product "Asset Manager" | 9.32 Search vendor "Hp" for product "Asset Manager" and version "9.32" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Asset Manager Search vendor "Hp" for product "Asset Manager" | 9.40 Search vendor "Hp" for product "Asset Manager" and version "9.40" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Asset Manager Search vendor "Hp" for product "Asset Manager" | 9.41 Search vendor "Hp" for product "Asset Manager" and version "9.41" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Asset Manager Search vendor "Hp" for product "Asset Manager" | 9.50 Search vendor "Hp" for product "Asset Manager" and version "9.50" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Asset Manager Cloudsystem Chargeback Search vendor "Hp" for product "Asset Manager Cloudsystem Chargeback" | 9.40 Search vendor "Hp" for product "Asset Manager Cloudsystem Chargeback" and version "9.40" | - |
Affected
|