Vulnerabilities > HP > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-06-05 CVE-2019-5393 Unspecified vulnerability in HP Intelligent Management Center 7.2/7.3
A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
network
low complexity
hp
4.3
2019-06-05 CVE-2019-5392 Unspecified vulnerability in HP Intelligent Management Center 7.2/7.3
A disclosure of information vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
network
low complexity
hp
5.3
2019-06-05 CVE-2019-11946 Use of Hard-coded Credentials vulnerability in HP Intelligent Management Center 7.2/7.3
A remote credential disclosure vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
network
low complexity
hp CWE-798
6.5
2019-06-05 CVE-2018-7125 Unspecified vulnerability in HP Intelligent Management Center 7.2/7.3
A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
network
low complexity
hp
6.3
2019-06-05 CVE-2018-7122 Information Exposure vulnerability in HP Intelligent Management Center 7.2/7.3
A remote disclosure of information vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.
network
low complexity
hp CWE-200
5.3
2019-05-29 CVE-2019-6322 Improper Locking vulnerability in HP products
HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS code could be tampered with if the TPM is disabled.
network
low complexity
hp CWE-667
6.8
2019-04-23 CVE-2019-2684 Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI).
network
high complexity
oracle redhat opensuse debian apache canonical hp
5.9
2019-04-09 CVE-2018-7117 Cross-site Scripting vulnerability in HP Integrated Lights-Out 5 Firmware 1.30/1.37
A remote Cross-Site Scripting in HPE iLO 5 Web User Interface vulnerability was identified in HPE Integrated Lights-Out 5 (iLO 5) for Gen10 ProLiant Servers earlier than version v1.40.
network
low complexity
hp CWE-79
6.1
2019-03-25 CVE-2019-3483 Unspecified vulnerability in HP Arcsight Logger
Mitigates a potential information leakage issue in ArcSight Logger versions prior to 6.7.
network
low complexity
hp
6.5
2019-03-25 CVE-2019-3482 Path Traversal vulnerability in HP Arcsight Logger
Mitigates a directory traversal issue in ArcSight Logger versions prior to 6.7.
network
low complexity
hp CWE-22
6.5