Описание
HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote attackers to obtain sensitive information by reading the headers of a response.
Ссылки
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- Not Applicable
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- Not Applicable
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:hp:universal_configuration_management_database:9.05:*:*:*:*:*:*:*
cpe:2.3:a:hp:universal_configuration_management_database:10.01:*:*:*:*:*:*:*
cpe:2.3:a:hp:universal_configuration_management_database:10.11:*:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.57742
Средний
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
github
больше 3 лет назад
HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote attackers to obtain sensitive information by reading the headers of a response.
EPSS
Процентиль: 98%
0.57742
Средний
5 Medium
CVSS2
Дефекты
CWE-200