CVE-2019-16287
HP ThinPro 6.x / 7.x Privilege Escalation
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In HP ThinPro Linux 6.2, 6.2.1, 7.0 and 7.1, an attacker may be able to leverage the application filter bypass vulnerability to gain privileged access to create a file on the local file system whose presence puts the device in Administrative Mode, which will allow the attacker to executed commands with elevated privileges.
En HP ThinPro Linux 6.2, 6.2.1, 7.0 y 7.1, un atacante puede aprovechar la vulnerabilidad de omisiĆ³n del filtro de la aplicaciĆ³n para obtener acceso privilegiado para crear un archivo en el sistema de archivos local cuya presencia pone el dispositivo en modo administrativo, lo que Permitir al atacante ejecutar comandos con privilegios elevados.
HP ThinPro versions 7.1, 7.0, 6.2.1, and 6.2 suffer from a local privilege escalation vulnerability.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-09-13 CVE Reserved
- 2019-11-22 CVE Published
- 2024-08-05 CVE Updated
- 2024-11-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/156899/HP-ThinPro-6.x-7.x-Privilege-Escalation.html | X_refsource_misc | |
http://seclists.org/fulldisclosure/2020/Mar/38 | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.hp.com/us-en/document/c06509350 | 2020-08-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Hp Search vendor "Hp" | Thinpro Search vendor "Hp" for product "Thinpro" | 6.2 Search vendor "Hp" for product "Thinpro" and version "6.2" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Thinpro Search vendor "Hp" for product "Thinpro" | 6.2.1 Search vendor "Hp" for product "Thinpro" and version "6.2.1" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Thinpro Search vendor "Hp" for product "Thinpro" | 7.0 Search vendor "Hp" for product "Thinpro" and version "7.0" | - |
Affected
| ||||||
Hp Search vendor "Hp" | Thinpro Search vendor "Hp" for product "Thinpro" | 7.1 Search vendor "Hp" for product "Thinpro" and version "7.1" | - |
Affected
|