Remote Code Execution Vulnerability in HPE KeyView
CVE-2016-4387

8.1HIGH

Key Information:

Vendor
HP
Status
Vendor
CVE Published:
5 October 2016

Summary

The Filter SDK present in versions 10.18 through 10.24 of HPE KeyView is susceptible to a vulnerability that enables remote attackers to execute arbitrary code. Attackers can exploit this flaw through various unspecified vectors, potentially compromising systems that utilize this software. It’s crucial for organizations using affected versions to apply mitigations as soon as possible to safeguard their environments.

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.