Vulnerabilities > HP

DATE CVE VULNERABILITY TITLE RISK
2018-02-15 CVE-2016-8517 Cross-site Scripting vulnerability in HP Systems Insight Manager
A cross site scripting vulnerability in HPE Systems Insight Manager in all versions prior to 7.6 was found.
network
low complexity
hp CWE-79
6.1
2018-02-15 CVE-2016-8516 Unspecified vulnerability in HP Systems Insight Manager
A remote denial of service vulnerability in HPE Systems Insight Manager in all versions prior to 7.6 was found.
network
low complexity
hp
7.5
2018-02-15 CVE-2016-8515 Unrestricted Upload of File with Dangerous Type vulnerability in HP Version Control Repository Manager
A remote malicious file upload vulnerability in HPE Version Control Repository Manager (VCRM) was found.
network
low complexity
hp CWE-434
8.8
2018-02-15 CVE-2016-8514 Information Exposure vulnerability in HP Version Control Repository Manager
A remote information disclosure in HPE Version Control Repository Manager (VCRM) was found.
network
low complexity
hp CWE-200
6.5
2018-02-15 CVE-2016-8513 Cross-Site Request Forgery (CSRF) vulnerability in HP Version Control Repository Manager
A Cross-Site Request Forgery (CSRF) vulnerability in HPE Version Control Repository Manager (VCRM) was found.
network
low complexity
hp CWE-352
8.0
2018-02-15 CVE-2016-8512 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HP Loadrunner and Performance Center
A Remote Code Execution vulnerability in all versions of HPE LoadRunner and Performance Center was found.
network
low complexity
hp CWE-119
critical
9.8
2018-02-15 CVE-2016-8511 Deserialization of Untrusted Data vulnerability in HP Network Automation
A Remote Code Execution vulnerability in HPE Network Automation using RPCServlet and Java Deserialization version v9.1x, v9.2x, v10.00, v10.00.01, v10.00.02, v10.10, v10.11, v10.11.01, v10.20 was found.
network
low complexity
hp CWE-502
critical
9.8
2018-02-07 CVE-2017-17482 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in HP Openvms 4.0/8.42L1
An issue was discovered in OpenVMS through V8.4-2L2 on Alpha and through V8.4-2L1 on IA64, and VAX/VMS 4.0 and later.
local
low complexity
hp CWE-119
7.8
2018-01-23 CVE-2017-2750 Improper Input Validation vulnerability in HP products
Insufficient Solution DLL Signature Validation allows potential execution of arbitrary code in HP LaserJet Enterprise printers, HP PageWide Enterprise printers, HP LaserJet Managed printers, HP OfficeJet Enterprise printers before 2308937_578479, 2405087_018548, and other firmware versions.
network
low complexity
hp CWE-20
critical
9.8
2018-01-23 CVE-2017-2747 Unspecified vulnerability in HP products
HP has identified a potential security vulnerability before IG_11_00_00.10 for DesignJet T790, T795, T1300, T2300, before MRY_04_05_00.5 for DesignJet T920, T930, T1500, T1530, T2500, T2530, before AENEAS_03_04_00.9 for DesignJet T3500, before NEXUS_01_12_00.11 for Latex 310, 330, 360, 370, before NEXUS_03_12_00.15 for Latex 315, 335, 365, 375, before STORM_00_05_01.6 for Latex 560, 570 and Latex 110 that may expose the credentials of the SMTP server configured to receive and process emails generated by the printers.
local
low complexity
hp
7.8