Vulnerabilities > HP > Universal Configuration Management Database > 9.05

DATE CVE VULNERABILITY TITLE RISK
2015-02-15 CVE-2014-7883 Information Exposure vulnerability in HP Universal Configuration Management Database 10.01/10.11/9.05
HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote attackers to obtain sensitive information by reading the headers of a response.
network
low complexity
hp CWE-200
5.0
2014-04-19 CVE-2013-6214 Information Disclosure vulnerability in HP Universal Configuration Management Database 10.01/10.10/9.05
Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Database 9.05, 10.01, and 10.10 allows remote authenticated users to obtain sensitive information via unknown vectors, aka ZDI-CAN-2042.
network
low complexity
hp
4.0