Vulnerabilities > HPE > Insight Remote Support

DATE CVE VULNERABILITY TITLE RISK
2024-11-27 CVE-2024-53676 Path Traversal vulnerability in HPE Insight Remote Support 7.12/7.12.0.529/7.12.0.545
A directory traversal vulnerability in Hewlett Packard Enterprise Insight Remote Support may allow remote code execution.
network
low complexity
hpe CWE-22
critical
9.8
2024-11-26 CVE-2024-11622 XXE vulnerability in HPE Insight Remote Support 7.12/7.12.0.529/7.12.0.545
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
network
low complexity
hpe CWE-611
7.5
2024-11-26 CVE-2024-53673 Deserialization of Untrusted Data vulnerability in HPE Insight Remote Support 7.12/7.12.0.529/7.12.0.545
A java deserialization vulnerability in HPE Remote Insight Support may allow an unauthenticated attacker to execute code.
network
low complexity
hpe CWE-502
critical
9.8
2024-11-26 CVE-2024-53674 XXE vulnerability in HPE Insight Remote Support 7.12/7.12.0.529/7.12.0.545
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
network
low complexity
hpe CWE-611
7.5
2024-11-26 CVE-2024-53675 XXE vulnerability in HPE Insight Remote Support 7.12/7.12.0.529/7.12.0.545
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
network
low complexity
hpe CWE-611
7.5
2023-06-16 CVE-2023-30904 Unspecified vulnerability in HPE Insight Remote Support 7.12/7.12.0.529
A security vulnerability in HPE Insight Remote Support may result in the local disclosure of privileged LDAP information.
local
low complexity
hpe
5.5