Sensitive Information Disclosure in HPE SiteScope
CVE-2017-8951
7.8HIGH
Summary
A vulnerability has been identified in HPE SiteScope that allows for the unauthorized disclosure of sensitive information. This affects versions 11.2x and 11.3x, potentially exposing critical data to unauthorized users, thereby compromising the security posture of organizations relying on this monitoring solution. Mitigation measures should be undertaken promptly to secure affected installations.
Affected Version(s)
SiteScope v11.2x, v11.3x
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved