Local Access Restriction Bypass in HPE Service Pack for ProLiant
CVE-2018-7118

7.8HIGH

Key Information:

Vendor
HP
Vendor
CVE Published:
9 April 2019

Summary

A vulnerability exists in the HPE Service Pack for ProLiant that allows local users to bypass access restrictions. This issue affects versions before 2018.09.0, potentially granting unauthorized access to sensitive data and functionality. Users are encouraged to update to the latest version to mitigate this security risk.

Affected Version(s)

HPE Service Pack for Proliant (HPE SPP) all versions of HPE Service Pack for ProLiant (SPP) prior to 2018.09.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.