Vulnerabilities > HP > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-02-15 CVE-2017-8985 Information Exposure vulnerability in HP XP Storage Hitachi Global Link Manager 6.3.000/8.5.200
HPE XP Storage using Hitachi Global Link Manager (HGLM) has a local authenticated information disclosure vulnerability in HGLM version HGLM 6.3.0-00 to 8.5.2-00.
local
low complexity
hp CWE-200
5.3
2018-02-15 CVE-2017-8978 Information Exposure vulnerability in HP Icewall Mcrp, Icewall MFA and Icewall SSO
A Remote Unauthorized Disclosure of Information vulnerability in HPE IceWall Products version MFA 4.0 proxy was found.
network
low complexity
hp CWE-200
4.6
2018-02-15 CVE-2017-8974 Unspecified vulnerability in HP Nonstop Server Software
A Local Authentication Restriction Bypass vulnerability in HPE NonStop Server version L-Series: T6533L01 through T6533L01^ADN; J-Series and H-series: T6533H02 through T6533H04^ADF and T6533H05 through T6533H05^ADL was found.
local
low complexity
hp
4.4
2018-02-15 CVE-2017-8973 Improper Input Validation vulnerability in HP Matrix Operating Environment 7.6
An improper input validation vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found.
network
low complexity
hp CWE-20
4.3
2018-02-15 CVE-2017-8972 Improper Input Validation vulnerability in HP Matrix Operating Environment 7.6
A clickjacking vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found.
network
low complexity
hp CWE-20
4.3
2018-02-15 CVE-2017-8971 Improper Input Validation vulnerability in HP Matrix Operating Environment 7.6
A clickjacking vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found.
network
low complexity
hp CWE-20
4.3
2018-02-15 CVE-2017-8970 Information Exposure vulnerability in HP Matrix Operating Environment 7.6
A remote unauthenticated disclosure of information vulnerability in HPE Matrix Operating Environment version 7.6 LR1 was found.
network
low complexity
hp CWE-200
5.3
2018-02-15 CVE-2017-8969 Improper Input Validation vulnerability in HP Insight Control 7.6
An improper input validation vulnerability in HPE Insight Control version 7.6 LR1 was found.
network
low complexity
hp CWE-20
5.7
2018-02-15 CVE-2017-8953 Cross-site Scripting vulnerability in HP Loadrunner and Performance Center
A Remote Cross-Site Scripting (XSS) vulnerability in HPE LoadRunner v12.53 and earlier and HPE Performance Center version v12.53 and earlier was found.
network
low complexity
hp CWE-79
5.4
2018-02-15 CVE-2017-8950 Information Exposure vulnerability in HP Sitescope
A Disclosure of Sensitive Information vulnerability in HPE SiteScope version v11.2x, v11.3x was found.
local
low complexity
hp CWE-200
5.5