Vulnerabilities > HP

DATE CVE VULNERABILITY TITLE RISK
2018-01-18 CVE-2018-2599 Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: JNDI). 4.8
2018-01-18 CVE-2018-2588 Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: LDAP). 4.3
2018-01-18 CVE-2018-2582 Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). 6.5
2018-01-18 CVE-2018-2579 Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Libraries). 3.7
2017-12-28 CVE-2017-5641 Deserialization of Untrusted Data vulnerability in multiple products
Previous versions of Apache Flex BlazeDS (4.7.2 and earlier) did not restrict which types were allowed for AMF(X) object deserialization by default.
network
low complexity
apache hp CWE-502
critical
9.8
2017-12-15 CVE-2017-17556 Information Exposure vulnerability in HP Synaptics Touchpad Driver
A debug tool in Synaptics TouchPad drivers allows local users with administrative access to obtain sensitive information about keyboard scan codes by modifying registry keys.
local
low complexity
hp CWE-200
5.1
2017-11-08 CVE-2017-14360 Resource Exhaustion vulnerability in HP Content Manager 9.0
A potential security vulnerability has been identified in HPE Content Manager Workgroup Service v9.00.
network
low complexity
hp CWE-400
7.5
2017-11-03 CVE-2017-14359 Cross-site Scripting vulnerability in HP Performance Center 12.20
A potential security vulnerability has been identified in HPE Performance Center versions 12.20.
network
low complexity
hp CWE-79
5.4
2017-10-31 CVE-2017-14358 Open Redirect vulnerability in HP products
A URL redirection to untrusted site vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1.
network
low complexity
hp CWE-601
6.1
2017-10-31 CVE-2017-14357 Cross-site Scripting vulnerability in HP products
A Reflected and Stored Cross-Site Scripting (XSS) vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1.
network
low complexity
hp CWE-79
6.1