Vulnerabilities > HP > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-02-09 CVE-2021-25140 Path Traversal vulnerability in HP Moonshot Provisioning Manager 1.20
A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20.
network
low complexity
hp CWE-22
critical
10.0
2021-02-09 CVE-2021-25139 Out-of-bounds Write vulnerability in HP Moonshot Provisioning Manager 1.20
A potential security vulnerability has been identified in the HPE Moonshot Provisioning Manager v1.20.
network
low complexity
hp CWE-787
critical
10.0
2020-12-02 CVE-2020-7199 Improper Authentication vulnerability in HP Edgeline Infrastructure Manager
A security vulnerability has been identified in the HPE Edgeline Infrastructure Manager, also known as HPE Edgeline Infrastructure Management Software.
network
low complexity
hp CWE-287
critical
10.0
2020-10-19 CVE-2020-7195 Expression Language Injection vulnerability in HP Intelligent Management Center
A iccselectrules expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0
2020-10-19 CVE-2020-7194 Expression Language Injection vulnerability in HP Intelligent Management Center
A perfaddormoddevicemonitor expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0
2020-10-19 CVE-2020-7193 Expression Language Injection vulnerability in HP Intelligent Management Center
A ictexpertcsvdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0
2020-10-19 CVE-2020-7192 Expression Language Injection vulnerability in HP Intelligent Management Center
A devicethresholdconfig expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0
2020-10-19 CVE-2020-7191 Expression Language Injection vulnerability in HP Intelligent Management Center
A devsoftsel expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0
2020-10-19 CVE-2020-7190 Expression Language Injection vulnerability in HP Intelligent Management Center
A deviceselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0
2020-10-19 CVE-2020-7189 Expression Language Injection vulnerability in HP Intelligent Management Center
A faultflasheventselectfact expression language injectionremote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
network
low complexity
hp CWE-917
critical
9.0