ZeroHour

CVE-2016-4371

CVSS 3.0
8.0 high
EPSS
<1%p55
Published
()
Modified
Description

HPE Service Manager Software 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, and 9.41 allows remote authenticated users to obtain sensitive information, modify data, and conduct server-side request forgery (SSRF) attacks via unspecified vectors, related to the Server, Web Client, Windows Client, and Service Request components.

Vendors
hp
Products
service manager, service manager mobility, service manager server, service manager service request catalog, service manager web client, service manager windows client
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.