Vulnerabilities > CVE-2015-2109 - Unspecified vulnerability in HP Operations Orchestration 10.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN hp
nessus
Summary
Unspecified vulnerability in HP Operations Orchestration 10.x allows remote attackers to bypass authentication, and obtain sensitive information or modify data, via unknown vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | CGI abuses |
NASL id | HP_OPERATIONS_ORCHESTRATION_HPSBMU03292.NASL |
description | The remote host has a version of HP Operations Orchestration installed that is 10.x prior to 10.21. It is, therefore, affected by an authentication bypass vulnerability due to an unspecified flaw. A remote attacker can exploit this flaw to bypass authentication credentials to obtain sensitive information or modify data. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 83278 |
published | 2015-05-07 |
reporter | This script is Copyright (C) 2015-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/83278 |
title | HP Operations Orchestration 10.x Authentication Bypass |
code |
|
References
- http://www.securityfocus.com/bid/73323
- http://www.securityfocus.com/bid/73323
- https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04595607
- https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04595607
- https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04595607
- https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04595607