Remote Information Disclosure in HPE Service Manager
CVE-2016-2025

7.5HIGH

Key Information:

Vendor
HP
Vendor
CVE Published:
30 May 2016

Summary

The vulnerability in HPE Service Manager affects several versions, allowing remote attackers to exploit unspecified vectors that lead to the exposure of sensitive information. The impacted components include the Web Client, Service Request Catalog, and various Mobility features, making it crucial for organizations using these versions to assess their security posture and take appropriate actions to mitigate potential risks.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.