Vulnerabilities > HP > Operations Orchestration > 9.0

DATE CVE VULNERABILITY TITLE RISK
2017-10-10 CVE-2017-8994 Improper Input Validation vulnerability in HP Operations Orchestration
A input validation vulnerability in HPE Operations Orchestration product all versions prior to 10.80, allows for the execution of code remotely.
network
low complexity
hp CWE-20
7.5
2015-11-23 CVE-2015-5451 Cross-Site Request Forgery (CSRF) vulnerability in HP Operations Orchestration
Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration Central 10.x before 10.22.001 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
network
hp CWE-352
6.8
2015-03-31 CVE-2015-2108 Information Exposure vulnerability in HP Operations Orchestration 10.0/9.0
Unspecified vulnerability in Powershell Operations in HP Operations Orchestration 9.x and 10.x allows remote authenticated users to obtain sensitive information via unknown vectors.
network
hp CWE-200
3.5
2012-09-19 CVE-2012-3258 Remote Code Execution vulnerability in HP Operations Orchestration 9.0
Unspecified vulnerability in HP Operations Orchestration 9.0 before 9.03 allows remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
hp
critical
10.0