Vulnerabilities > HP

DATE CVE VULNERABILITY TITLE RISK
2019-08-09 CVE-2019-5403 Cross-site Scripting vulnerability in HP 3Par Storeserv Management Console 3.3.1/3.5
A remote multiple cross-site scripting vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media version(s): prior to 3.5.0.1.
network
low complexity
hp CWE-79
4.8
2019-08-09 CVE-2019-5402 Unspecified vulnerability in HP 3Par Storeserv Management Console 3.3.1/3.5
A remote authorization bypass vulnerability was discovered in HPE 3PAR StoreServ Management and Core Software Media version(s): prior to 3.5.0.1.
network
low complexity
hp
critical
9.4
2019-08-09 CVE-2019-5400 Session Fixation vulnerability in HP 3Par Service Processor Firmware
A remote session reuse vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
network
low complexity
hp CWE-384
6.3
2019-08-09 CVE-2019-5399 Unspecified vulnerability in HP 3Par Service Processor Firmware
A remote gain authorized access vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
network
low complexity
hp
critical
9.4
2019-08-09 CVE-2019-5398 Cross-site Scripting vulnerability in HP 3Par Service Processor Firmware
A remote multiple multiple cross-site vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
network
low complexity
hp CWE-79
5.4
2019-08-09 CVE-2019-5397 Cross-site Scripting vulnerability in HP 3Par Service Processor Firmware
A remote bypass of security restrictions vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
network
low complexity
hp CWE-79
critical
9.4
2019-08-09 CVE-2019-5396 Unspecified vulnerability in HP 3Par Service Processor Firmware
A remote authentication bypass vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
network
low complexity
hp
critical
9.4
2019-08-09 CVE-2019-5395 Unrestricted Upload of File with Dangerous Type vulnerability in HP 3Par Service Processor Firmware
A remote arbitrary file upload vulnerability was discovered in HPE 3PAR Service Processor version(s): prior to 5.0.5.1.
network
low complexity
hp CWE-434
8.8
2019-08-01 CVE-2019-5401 Cross-site Scripting vulnerability in HP Hp2910Al-48G Firmware W.15.14.00.16
A potential security vulnerability has been identified in HP2910al-48G version W.15.14.0016.
network
low complexity
hp CWE-79
4.8
2019-07-25 CVE-2019-3486 Cross-site Scripting vulnerability in HP Arcsight Management Center 2.0
Mitigates a stored cross site scripting issue in ArcSight Security Management Center versions prior to 2.9.1
network
low complexity
hp CWE-79
6.1