Remote Information Disclosure in HPE NonStop Servers via SSH Service
CVE-2017-5803

7.5HIGH

Key Information:

Vendor
HP
Vendor
CVE Published:
15 February 2018

Summary

A vulnerability has been identified in HPE NonStop Servers' SSH Service, which may allow attackers to remotely access sensitive information. This issue affects specific versions within the L and H series of the servers. Organizations using these products are advised to implement mitigation strategies promptly. For more detailed information on solutions and recommendations, please refer to the official documentation and security advisories.

Affected Version(s)

NonStop Servers using SSH Service L series: T0801L02 through T0801L02^ABX

NonStop Servers using SSH Service J and H series: T0801H01 through T0801H01^ACA

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.