Vulnerabilities
Vulnerable Software
Hp:  Security Vulnerabilities
A remote Cross-Site Scripting in HPE iLO 5 Web User Interface vulnerability was identified in HPE Integrated Lights-Out 5 (iLO 5) for Gen10 ProLiant Servers earlier than version v1.40.
CVSS Score
6.1
EPSS Score
0.013
Published
2019-04-09
A local access restriction bypass vulnerability was identified in HPE Service Pack for ProLiant (SPP) Bundled Software earlier than version 2018.09.0.
CVSS Score
7.8
EPSS Score
0.005
Published
2019-04-09
IBM Tivoli Storage Manager (IBM Spectrum Protect 7.1 and 8.1) could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. IBM X-Force ID: 151014.
CVSS Score
6.1
EPSS Score
0.012
Published
2019-04-08
A potential security vulnerability caused by the use of insecure (http) transactions during login has been identified with early versions of the Isaac Mizrahi Smartwatch mobile app. HP has no access to customer data as a result of this issue.
CVSS Score
7.5
EPSS Score
0.019
Published
2019-03-27
A potential security vulnerability caused by incomplete obfuscation of application configuration information was discovered in Tommy Hilfiger TH24/7 Android app versions 2.0.0.11, 2.0.1.14, 2.1.0.16, and 2.2.0.19. HP has no access to customer data as a result of this issue.
CVSS Score
2.1
EPSS Score
0.005
Published
2019-03-27
In HP LaserJet Enterprise, HP PageWide Enterprise, HP LaserJet Managed, and HP OfficeJet Enterprise Printers, solution application signature checking may allow potential execution of arbitrary code.
CVSS Score
9.8
EPSS Score
0.026
Published
2019-03-27
A potential vulnerability has been identified in HP Remote Graphics Software’s certificate authentication process version 7.5.0 and earlier.
CVSS Score
9.1
EPSS Score
0.012
Published
2019-03-27
HP Support Assistant before 8.7.50.3 allows an unauthorized person with local access to load arbitrary code.
CVSS Score
7.3
EPSS Score
0.004
Published
2019-03-27
Mitigates a potential information leakage issue in ArcSight Logger versions prior to 6.7.
CVSS Score
6.5
EPSS Score
0.015
Published
2019-03-25
Mitigates a remote code execution issue in ArcSight Logger versions prior to 6.7.
CVSS Score
7.8
EPSS Score
0.014
Published
2019-03-25


Contact Us

Shodan ® - All rights reserved