// For flags

CVE-2020-7136

 

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A security vulnerability in HPE Smart Update Manager (SUM) prior to version 8.5.6 could allow remote unauthorized access. Hewlett Packard Enterprise has provided a software update to resolve this vulnerability in HPE Smart Update Manager (SUM) prior to 8.5.6. Please visit the HPE Support Center at https://support.hpe.com/hpesc/public/home to download the latest version of HPE Smart Update Manager (SUM). Download the latest version of HPE Smart Update Manager (SUM) or download the latest Service Pack For ProLiant (SPP).

Una vulnerabilidad de seguridad en HPE Smart Update Manager (SUM) anterior a la versión 8.5.6, podría permitir un acceso remoto no autorizado. Hewlett Packard Enterprise ha proporcionado una actualización de software para resolver esta vulnerabilidad en HPE Smart Update Manager (SUM) anterior a la versión 8.5.6. Por favor, visite el Centro de Soporte de HPE en https://support.hpe.com/hpesc/public/home para descargar la última versión de HPE Smart Update Manager (SUM). Descargue la última versión de HPE Smart Update Manager (SUM) o descargue el último Service Pack para ProLiant (SPP).

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-01-16 CVE Reserved
  • 2020-04-30 CVE Published
  • 2024-06-09 EPSS Updated
  • 2024-08-04 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Hpe
Search vendor "Hpe"
Smart Update Manager
Search vendor "Hpe" for product "Smart Update Manager"
< 8.5.6
Search vendor "Hpe" for product "Smart Update Manager" and version " < 8.5.6"
-
Affected