Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-5408

Опубликовано: 09 авг. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 6.4
EPSS Низкий

Описание

Command View Advanced Edition (CVAE) products contain a vulnerability that could expose configuration information of hosts and storage systems that are managed by Device Manager server. This problem is due to a vulnerability in Device Manager GUI. The following products are affected. DevMgr version 7.0.0-00 to earlier than 8.6.1-02 RepMgr if it is installed on the same machine as DevMgr TSMgr if it is installed on the same machine as DevMgr. The resolution is to upgrade to the fixed version as described below or later version of DevMgr 8.6.2-02 or later. RepMgr and TSMgr will be corrected by upgrading DevMgr.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hp:xp7_device_manager:*:*:*:*:*:*:*:*
Версия от 7.0.0-00 (включая) до 8.6.1-02 (исключая)
cpe:2.3:a:hp:xp7_replication_manager:-:*:*:*:*:*:*:*
cpe:2.3:a:hp:xp7_tiered_storage_manager:-:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00546
Низкий

6.5 Medium

CVSS3

6.4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

Command View Advanced Edition (CVAE) products contain a vulnerability that could expose configuration information of hosts and storage systems that are managed by Device Manager server. This problem is due to a vulnerability in Device Manager GUI. The following products are affected. DevMgr version 7.0.0-00 to earlier than 8.6.1-02 RepMgr if it is installed on the same machine as DevMgr TSMgr if it is installed on the same machine as DevMgr. The resolution is to upgrade to the fixed version as described below or later version of DevMgr 8.6.2-02 or later. RepMgr and TSMgr will be corrected by upgrading DevMgr.

EPSS

Процентиль: 67%
0.00546
Низкий

6.5 Medium

CVSS3

6.4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo